Apple products which could allow an attacker to execute arbitrary code, escalation of privileges or bypass security restrictions on the targeted system.
«These vulnerabilities exist in Apple products due to certificate validation issue in the Security component, an issue in the Kernel, and an error in the Webkit component. An attacker could exploit these vulnerabilities by sending specially crafted requests,» CERT-In said in its statement on Friday.
WebKit is a browser engine developed by Apple and primarily used in its Safari web browser, as well as all web browsers on iOS and iPadOS as well as other Apple products like iPhones and watches.
As per the vulnerability report, the list of affected devices include:
1) Apple iOS versions prior to 16.7 and iPadOS versions prior to 16.7
2) Apple macOS Moneterey versions prior to 12.7
3) Apple watchOS versions prior to 9.6.3
4) Apple iOS versions prior to 17.0.1 and iPadOS versions prior to 17.0.1
5) Apple Safari versions prior to 16.6.1
6) Apple macOS Ventura versions prior to 13.6
7) Apple watchOS versions prior to 10.0.1
As per the Apple Security page, keeping software up to date is one of the most important things users can do to maintain their Apple product's security. Given below ate the latest versions of the software as per the site:
The latest version of iOS is 17.0.1 for iPhone XS and later and 17.0.2 for