Monday, May 29, 2023
For any kind of suggestion or query feel free to mail us at hello@globaldaily.in   Your online source for any kind of news   Welcome to Global Daily
Apple iPhone and iPad users, government has ‘high-risk’ warning for you – Times of India

Apple iPhone and iPad users, government has ‘high-risk’ warning for you – Times of India

The Indian Computer Emergency Response Team (CERT-In) under the IT ministry has issued a high-severity warning for iPhone and iPad users. The government body has issued a warning for iPhone and iPad users running certain versions of iOS and iPadOS operating systems on their devices as it has discovered multiple critical vulnerabilities in these operating systems. The vulnerabilities, identified as CVE-2023-28204, CVE-2023-32373, and CVE-2023-32409, have been classified as high severity by the Indian Computer Emergency Response Team (CERT-In).
What government body has said
According to the government body, these newly found security vulnerabilities when exploited successfully can potentially allow attackers to execute arbitrary code, bypass security measures, gain elevated privileges, access sensitive information, or cause denial-of-service disruptions on affected devices.
Operating systems affected by these vulnerabilities
As per the report, users running Apple iOS versions prior to 16.5 and iPadOS versions prior to 16.5. Apart from these, users running Apple iOS versions prior to 15.7.6 and iPadOS versions prior to 15.7.6 are also affected by these vulnerabilities.
Why these vulnerabilities exist
The report mentions that these vulnerabilities exist in the Apple iOS and iPadOS because the Kernel component is affected by type confusion, use-after-free flaw, permission issues, and a race condition. The WebKit component suffers from out-of-bounds read, use-after-free flaw, and buffer overflow. Other affected components include LaunchServices, IOSurfaceAccelerator, Sandbox, Model I/O, ImageIO, Accessibility, Metal, TV App, Telephony, Shell, IOSurface, CoreServices, System Settings, Photos, Security, Associated Domains, StorageKit, PDFKit, Wi-Fi, Shortcuts, GeoServices, Core Location, NetworkExtension, AppleMobileFileIntegrity, Weather, Cellular, Apple Neural Engine, CoreCapture comment, and SQLit Component.
How these vulnerabilities can be exploited
As per the report, hackers can exploit these vulnerabilities using a remote attacker to entice a victim into visiting specially crafted web content. Once the victim accesses the malicious web content, the attacker can leverage the identified security flaws to execute arbitrary code, evade security measures, gain escalated privileges, extract sensitive information, or disrupt the normal functioning of the targeted device. These vulnerabilities pose a significant risk to the privacy and security of affected users’ data.
What users can do
CERT-In has advised users to immediately apply the right patch for both iOS and iPadOS to protect themselves from these vulnerabilities. Thankfully, Apple has rolled out the latest version of iOS and iPadOS that includes fixes for these vulnerabilities. All users need to do is update their devices with iOS version 16.5 or later and iPadOS version 16.5 or later.
For older devices that cannot upgrade to these versions, iOS version 15.7.6 or later and iPadOS version 15.7.6 or later should be installed.

Source

Hits: 0

Leave a Reply

Your email address will not be published. Required fields are marked *

33 − = 23

Related Posts

Recent Posts

World leaders congratulate Turkey’s victorious Erdogan – Times of India
World leaders congratulate Turkey's victorious Erdogan - Times of India
Petrol Remains Above Rs 100 In Mumbai, Bengaluru, Kolkata; Check Fuel Rates In Your City On May 29
Petrol Remains Above Rs 100 In Mumbai, Bengaluru, Kolkata; Check Fuel Rates In Your City On May 29
World Digestive Health Day 2023: Here’s How You Can Improve Your Digestion
World Digestive Health Day 2023: Here's How You Can Improve Your Digestion
Odisha Research Fellowship: OSHEC Recruitment 2023: Applications invited for seed funding, research fellowship – Times of India
Odisha Research Fellowship: OSHEC Recruitment 2023: Applications invited for seed funding, research fellowship - Times of India
IIFA 2023: Varun Dhawan And Nora Fatehi Dance On Garmi Song, But The Internet Is Not Impressed
IIFA 2023: Varun Dhawan And Nora Fatehi Dance On Garmi Song, But The Internet Is Not Impressed
Indian Wearable Brand Fire-Boltt Ranks 2nd In Global Smartwatch Market: Report
Indian Wearable Brand Fire-Boltt Ranks 2nd In Global Smartwatch Market: Report
ChatGPT ‘fools’ lawyer who now faces sanctions – Times of India
ChatGPT 'fools' lawyer who now faces sanctions - Times of India
Weather updates, GT vs CSK: Better forecast for IPL final on reserve day, May 29 | Cricket News – Times of India
Weather updates, GT vs CSK: Better forecast for IPL final on reserve day, May 29 | Cricket News - Times of India
Weekly Numerology Predictions from 29th May to 4th June, 2023
Weekly Numerology Predictions from 29th May to 4th June, 2023
Imran Khan Urges Pak Govt to Declare Polls after They’re Done ‘Breaking’ PTI Apart
Imran Khan Urges Pak Govt to Declare Polls after They’re Done ‘Breaking’ PTI Apart

Archives

Categories

Tags

PHP Code Snippets Powered By : XYZScripts.com