financetom
News
financetom
/
News
/
Your Apple device may be prone to hacking if not updated
News World Market Environment Technology Personal Finance Politics Retail Business Economy Cryptocurrency Forex Stocks Market Commodities
Your Apple device may be prone to hacking if not updated
May 19, 2022 7:41 AM

The Indian Computer Emergency Response Team (CERT-In) has highlighted multiple security vulnerabilities across Apple's suite of mobile operating systems and urged users to immediately update to the latest version of each OS, which the Cupertino-based tech giant had rolled out on Tuesday.

CERT-In comes under the Union Ministry of Electronics and Information Technology and is tasked with "securing Indian cyber space" and regularly issues such security advisories.

Thursday's advisories follow a note issued by the Indian cybersecurity watchdog on flaws in Apple's native web browser, Safari.

The latest versions of Apple's operating systems include iOS 15.5, iPadOS 15.5 and watchOS 8.6.

Last year, Apple decoupled Safari from macOS, allowing the browser to be to be updated independently of the operating system — all other native Apple applications continue to be updated only as part of an OS update. The latest version of Apple’s web browser is Safari 15.5.

iPhone, iPad and iPod Touch can be updated to 15.5 by going to "Settings>General>Software Update", while Apple Watch will automatically update to 8.6 while charging and in the vicinity of a paired iPhone.

According to CERT-In's vulnerability notes issued on Thursday, older iOS, iPadOS and watchOS had multiple vulnerabilities which the agency rated "high" on the severity scale, and warned that they "could be exploited by a remote attacker to execute arbitrary code, bypass security restrictions and cause denial of service condition on a targeted system".

This means a malicious actor can take advantage of these vulnerabilities and gain unauthorised access to a user's device and sensitive personal data stored on it, and potentially lock the user out of the device.

Also read:

Apple releases iOS 15.5: What’s new and why you need to update your device

In the case of iOS and iPadOS, CERT-In said the vulnerabilities were caused by improper execution of a variety of code, as well as lapses in security certificate parsing, "Safari Private Browsing" and failed authorisation and checks in Wi-Fi, as well as the Notes and Shortcuts applications.

"A remote attacker can exploit these vulnerabilities by persuading a victim to visit maliciously crafted web (page)," the CERT-In advisory said.

Similarly, in the case of watchOS as well, the vulnerabilities were caused by improper execution of code, failed security certificate checks and memory corruption.

As for Safari, CERT-In highlighted five "critical" vulnerabilities, which the agency said were found in the web browser in the Apple's Mac operating systems dubbed Big Sur (macOS 11, released in 2020) and Catalina (macOS 10.15, released in 2019). These vulnerabilities can be fixed by updating Safari to 15.5.

"These vulnerabilities exist in Apple Safari for macOS Big Sur and macOS Catalina due to memory corruption and use-after free within the WebKit component," CERT-In said.

Also read: Update your Android Chrome browser immediately

Comments
Welcome to financetom comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
Related Articles >
Kiwi rushes to two-month high after hawkish RBNZ policy meeting
Kiwi rushes to two-month high after hawkish RBNZ policy meeting
May 21, 2024
The New Zealand dollar rallied in Asian trade on Wednesday, resuming gains against its US counterpart and scaling a fresh two-month high after the policy meeting by the Reserve Bank of New Zealand, which was more bullish than expected. As expected, the RBNZ maintained interest rates unchanged at 15 year highs, while holding onto its strict stance and language, asserting...
Dow sustains losses but Nasdaq 100 hits new high and Nikkei 225 recovers
Dow sustains losses but Nasdaq 100 hits new high and Nikkei 225 recovers
May 23, 2024
Major Indices Talking Points and Analysis: Dow Jones edges lower after hawkish FOMC minutesNasdaq 100 at new high with Nvida's strong earnings likely to support the bullish trendNikkei rebounds Dow edges lower after Fed minutes The index continues to drift back, consolidating after the gains of late April and early May. The Fed minutes indicated that some policymakers remained worried...
Dollar moves in positive zone ahead of Fed minutes
Dollar moves in positive zone ahead of Fed minutes
May 22, 2024
Dollar rose in European trade on Wednesday against a basket of major rivals, maintaining gains for the fifth straight session and moving in a positive zone as US 10-year treasury yields rebounded. It comes ahead of the Federal Reserves meeting minutes, which could provide clues on the future of US interest rates. The Index The dollar index rose 0.15% to...
Yen skids to three-week trough on interest rate gap concerns
Yen skids to three-week trough on interest rate gap concerns
May 23, 2024
Yen skidded in Asian trade on Thursday to three-week lows against the US dollar, sharpening losses for the second straight session amid persistent concerns about the Japan-US interest rate gap. The odds of a Fed interest rate cut in the summer dipped after the release of the Federal Reserves meeting minutes, with investors now awaiting more clues. And following a...
Copyright 2023-2025 - www.financetom.com All Rights Reserved