Apple has released an update to patch a series of vulnerabilities in iOS, macOS, Safari and many other platforms, update now!
Apple recently released a patch for a series of simple to serious vulnerabilities that have been confirmed on iOS and macOS platforms, Safari, watchOS, tvOS and iTunes. The most dangerous case is a flaw in WebKit that allows an attacker to gain access, hijack the device and execute code remotely.
More specifically, among all the vulnerabilities that have been tagged with the CVE identifier on Apple's service platforms, there are 30 cases affecting iOS, 11 cases affecting Safari and 27 vulnerabilities exist in macOS. For its part, Apple recommends that global users quickly update to iOS 13.4, Safari 13.1 and macOS Catalina 10.15.3 to limit the risks from the aforementioned vulnerabilities.
Apple is often very tight-lipped when it comes to details of vulnerabilities in security updates, but this time is the exception. Cupertino has outlined eight critical vulnerabilities that have just been patched in Apple's WebKit browser tool that could allow hackers to deploy a variety of malicious activities, from cross-site scripting (XSS) attacks. to remote code execution in iOS and Safari.
The most serious of these is a flaw in WebKit that has the identifier CVE-2020-3897. It is dangerous in that it can be abused to remotely execute code on the device, but also requires victim interaction. Specifically, a hacker must trick the victim into accessing a malicious website or opening a malicious file.
'This vulnerability allows remote attackers to execute arbitrary code on the affected settings of Safari, and exists in the object conversion buffer. By taking actions in JavaScript, an attacker can take advantage of this vulnerability to execute code in the context of the current process, 'said Dustin Childs, head of the Zero Day Initiative security team.
Update your Apple platforms / services to the latest version for your own safety.
You should read it
- Apple releases iOS 14.4.2, iOS 12.5.2, and watchOS 7.3.3 updates that patch the critical zero-day vulnerability
- How to patch browser security holes
- Immediately patch CWP vulnerability that allows code execution as root on Linux servers
- iOS 11.1 was released with a series of new emoji and fixes for the KRACK vulnerability
- Apple releases iOS 15.3.1 to completely fix Safari security flaw
- Warning of dangerous Spring4Shell vulnerability, there are signs of scanning and exploiting
- Discovered a new zero-day vulnerability on macOS that allows attackers to run commands remotely
- Apple released iOS 11.3, macOS 10.13.4, tvOS 11.3 and watchOS 4.3
May be interested
- Intel released a new patch to fix the Specter and Meltdown vulnerabilitiesintel has officially released the latest and stable patch for the two specter and meltdown vulnerabilities, causing it to restart automatically. this patch is for 6th generation processors (skylake), 7 (kaby lake) and 8 (coffee lake) including core i, core x, scalable xeon and xenon d.
- Microsoft releases new Patch Tuesday update for Windows 10microsoft has released a series of new cumulative updates for win 10 as part of the monthly patch tuesday update cycle, bringing changes and fixes to improve the quality and security of windows 10.
- Apple Patches Zero-Day Vulnerability That Could Let iPhones, iPads, and MacBooks Get Hackedapple has just released a security update to patch two zero-day vulnerabilities. in it, one has been made public and another is being exploited by hackers to penetrate iphones and macs. these are the first zero-day vulnerabilities that apple will patch in 2022.
- Lenovo updates BIOS to patch security holes for hundreds of device modelschinese computer maker lenovo has just released a security advisory to warn of several high-severity bios vulnerabilities.
- Hackers can modify Safari on macOS to steal user dataapple was notified of this security flaw six months ago but has not yet patched it.
- Chrome, Edge and Firefox cannot be opened after updating Windows 10, 11recently, microsoft has released the patch tuesday april 2022 update to patch a series of serious vulnerabilities on both windows 11, windows 10 and older versions of windows. to ensure safety, microsoft recommends that users update windows immediately.
- Apple released OS X Lion update 10.7.3the new patch from apple fixes 40/50 critical security bugs on mac os x and upgrades safari to version 5.1.3.
- Download an emergency Windows patch right away, fix two critical vulnerabilities, affecting every Windows versionmicrosoft has announced a new windows emergency patch, aimed at patching more than 90 security flaws, including two vulnerabilities used in direct attacks. every windows is affected, please update your operating system now.
- Microsoft has released a critical update for Windows 10, users need to update nowmicrosoft recently released a critical update for windows 10 as well as windows server 2016 and windows server 2019 to fix a security vulnerability discovered by the u.s. national security agency (nsa) on april 14. 1 past.
- How to turn off self-extracting files on macOS Safarithe safari browser on macos has the ability to automatically extract files, without having to do it manually. however, if you want to turn off auto-extracting files on macos safari, how do you do it?