CVE-2016-4741
The Assets component in Apple iOS before 10 allows man-in-the-middle attackers to block software updates via vectors related to lack of an HTTPS session for retrieving updates.
Date published : 2016-09-18
http://lists.apple.com/archives/security-announce/2016/Sep/msg00002.html
http://lists.apple.com/archives/security-announce/2016/Sep/msg00008.html