QID 610477

Date Published: 2023-05-26

QID 610477: Apple iOS 16.4.1 and iPadOS 16.4.1 Security Update Missing (HT213720)

iOS is a mobile operating system created and developed by Apple Inc.

Following security issues are observed :
An out-of-bounds write issue was addressed with improved input validation. CVE-2023-28206
A use after free issue was addressed with improved memory management. WebKit Bugzilla

Affected Devices
iPhone 8 and later, iPad Pro (all models), iPad Air 3rd generation and later, iPad 5th generation and later, and iPad mini 5th generation and later

On successful exploitation, it could allow an attacker to execute code.

  • CVSS V3 rated as Critical - 8.8 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution
    Refer to Apple advisory HT213720 for patching details.
    Vendor References

    CVEs related to QID 610477

    Software Advisories
    Advisory ID Software Component Link
    HT213720 iOS URL Logo support.apple.com/en-in/HT213720