5/30/2023 0 Comments Apple security update![]() ![]() ![]() The update also includes other product enhancements and, crucially, over 20 new emojis including a donkey, ginger root, a goose, a jellyfish, and some maracas. The security updates can be applied to all models of iPhone 8 and later, all models of iPad Pro, third-generation models and later models of iPad Air, fifth-generation and later models of iPad, and fifth-generation and later models of iPad mini. ![]() ![]() The update also fixes three vulnerabilities in Apple Neural Engine that could lead to arbitrary code execution with kernel privileges, vulnerabilities in AppleMobileFileIntegrity, Calendar, Find My, Identity Services, Photos, Podcasts and Sandbox that could lead to user data exposure, and two vulnerabilities in WebKit. As such, the updates should be prioritised. Both issues are addressed with improved memory management and handling.ĭue to the critical nature of the jobs that the kernel performs on any operating system, vulnerabilities that affect it are valued by threat actors for the high-level access they may grant. The same applies in the second instance, although in this case the app would also need to have root privileges on the system. In the first case, exploitation could lead to an app being able to execute arbitrary code on the system with kernel privileges. The two vulnerabilities affecting the operating system core kernel are currently being tracked as CVE-2023-27969, attributed to Adam Doupé of Arizona State University’s Laboratory of Security Engineering for Future Computing (SEFCOM), and CVE-2023-27933, attributed to an individual going by the handle sqrtpwn, who has previously disclosed other kernel-linked vulnerabilities in Apple products. As such, full details of their precise nature are, as usual, sparse. To protect its customers and give as many as possible a chance to take advantage of automated upgrade procedures, Apple does not disclose, discuss or confirm any security issues until they have been thoroughly investigated and patches or new releases made available if needed. Consumer users can check their update status by accessing Settings – General – Software Update, although they may find the update has been applied automatically. The new versions, iOS 16.4 for iPhone and iPadOS 16.4 for iPad, are available to download now through the usual channels. ![]()
0 Comments
Leave a Reply. |