QID 610479

Date Published: 2023-05-26

QID 610479: Apple iOS 15.7.6 and iPadOS 15.7.6 Security Update Missing (HT213765)

iOS is a mobile operating system created and developed by Apple Inc.

Following security issues are observed :
A privacy issue was addressed with improved private data redaction for log entries. CVE-2023-32388
This issue was addressed with improved checks. CVE-2023-23532
The issue was addressed with improved memory handling. CVE-2023-28181
A buffer overflow was addressed with improved bounds checking. CVE-2023-32384
An out of bounds read was addressed with improved input validation. CVE-2023-32410
The issue was addressed with additional permissions checks. CVE-2023-27940
A race condition was addressed with improved state handling. CVE-2023-32413
A use after free issue was addressed with improved memory management. CVE-2023-32398
A logic issue was addressed with improved state management. CVE-2023-32407
This issue was addressed with improved redaction of sensitive information. CVE-2023-32403
The issue was addressed with improved checks. CVE-2023-32365
A logic issue was addressed with improved state management. CVE-2023-32397
The issue was addressed with improved checks. CVE-2023-32391
A use after free issue was addressed with improved memory management. CVE-2023-32412
The issue was addressed with improved handling of caches. CVE-2023-32408
An out of bounds read was addressed with improved input validation.
A use after free issue was addressed with improved memory management.

Affected Devices
iPhone 6s (all models), iPhone 7 (all models), iPhone SE (1st generation), iPad Air 2, iPad mini (4th generation), and iPod touch (7th generation)

On successful exploitation, it could allow an attacker to execute code.

  • CVSS V3 rated as Critical - 8.8 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution
    Refer to Apple advisory HT213765 for patching details.
    Vendor References
    Software Advisories
    Advisory ID Software Component Link
    HT213765 iOS URL Logo support.apple.com/en-in/HT213765