QID 610497

Date Published: 2023-07-25

QID 610497: Apple iOS 15.7.8 and iPadOS 15.7.8 Security Update Missing

iOS is a mobile operating system created and developed by Apple Inc.

Following security issues are observed :
The issue was addressed with improved memory handling. CVE-2023-23540
A logic issue was addressed with improved restrictions. CVE-2023-32416
The issue was addressed with improved memory handling. CVE-2023-32441
This issue was addressed with improved state management. CVE-2023-38606
A use-after-free issue was addressed with improved memory management. CVE-2023-32433
The issue was addressed with improved checks. WebKit Bugzilla
The issue was addressed with improved bounds checks. WebKit Bugzilla
The issue was addressed with improved checks. WebKit Bugzilla
The issue was addressed with improved checks. WebKit Bugzilla
The issue was addressed with improved checks. WebKit Bugzilla

Affected Devices
iPhone 6s (all models), iPhone 7 (all models), iPhone SE (1st generation), iPad Air 2, iPad mini (4th generation), and iPod touch (7th generation)

On successful exploitation, it could allow an attacker to execute code.

  • CVSS V3 rated as Critical - 8.8 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution
    Refer to Apple advisory HT213842 for patching details.
    Vendor References
    Software Advisories
    Advisory ID Software Component Link
    HT213842 iOS URL Logo support.apple.com/en-in/HT213842