Security Advisory
CVE-2016-1844
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
The Messages component in Apple OS X before 10.11.5 mishandles roster changes, which allows remote attackers to modify contact lists via unspecified vectors.