Apple releases urgent security fix for iPhone and Mac devices


Apple has issued iOS, iPadOS and macOS security patches for a major vulnerability that was found to be affecting a large number of its device.
The vulnerability, tracked as CVE-2022-22620, was being abused in the wild, allowing threat actors to execute any code (including malware) on a compromised device, or even crash the OS.
“Apple is aware of a report that this issue may have been actively exploited,” the company said in the announcement following the release of the patch, which is part of iOS and iPadOS versions 15.3.1., while macOS Monterey is now at 12.2.1.
Numerous models affected
All iPhones, from iPhone 6S onwards, are affected by the vulnerability, as are all models of the iPad Pro, all iPad Air models starting from Air 2, iPad 5 and onwards, iPad mini 4 and newer, as well as the iPod touch 7. Furthermore, all Macs running macOS Monterey were vulnerable.
So far, it appeares that the vulnerability was likely only used in targeted attacks, meaning the average user is probably under no immediate threat. Still, everyone is advised to update their devices to the newest version, as soon as possible.
When it comes to patching up dangerous system vulnerabilities, Apple has started the year on a high note. Last month, two of the zero-days that were found to have been exploited in the wild were patched – CVE-2022-22587 and CVE-2022-22594. These affected iPhones, mac OS Monterey-powered Macs, and a couple of iPads.
Late last year, the company was criticized for being slow to respond to news of newly discovered zero-days. It has even gotten to the point where the company had to issue a formal apology to the cybersecurity community:
“We saw your blog post regarding this issue and your other reports. We apologize for the delay in responding to you,” an Apple employee wrote in an email to a cybersecurity researcher Denis Tokarev last September.
Via: BleepingComputer
Audio player loading… Apple has issued iOS, iPadOS and macOS security patches for a major vulnerability that was found to be affecting a large number of its device. The vulnerability, tracked as CVE-2022-22620, was being abused in the wild, allowing threat actors to execute any code (including malware) on a…
Recent Posts
- Popular Android financial help app is actually dangerous malware
- Our Favorite Internal SSD Is on Sale Right Now
- Tesla reportedly launches FSD in China — or has it?
- Clicks is finally releasing its keyboard add-on for some Android phones
- What is Firefly: everything you need to know about Adobe’s safe AI image generator
Archives
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023
- May 2023
- April 2023
- March 2023
- February 2023
- January 2023
- December 2022
- November 2022
- October 2022
- September 2022
- August 2022
- July 2022
- June 2022
- May 2022
- April 2022
- March 2022
- February 2022
- January 2022
- December 2021
- November 2021
- October 2021
- September 2021
- August 2021
- July 2021
- June 2021
- May 2021
- April 2021
- March 2021
- February 2021
- January 2021
- December 2020
- November 2020
- October 2020
- September 2020
- August 2020
- July 2020
- June 2020
- May 2020
- April 2020
- March 2020
- February 2020
- January 2020
- December 2019
- November 2019
- September 2018
- October 2017
- December 2011
- August 2010