QID 610532

Date Published: 2024-01-02

QID 610532: Apple iOS 16.7.3 and iPadOS 16.7.3 Security Update Missing

iOS is a mobile operating system created and developed by Apple Inc.

Following security issues are observed :
A privacy issue was addressed with improved private data redaction for log entries. CVE-2023-42919
This issue was addressed with improved redaction of sensitive information. CVE-2023-42884
This issue was addressed with improved redaction of sensitive information. CVE-2023-42922
The issue was addressed with improved memory handling. CVE-2023-42899
The issue was addressed with improved memory handling. CVE-2023-42914
The issue was addressed with improved memory handling. WebKit Bugzilla
A memory corruption vulnerability was addressed with improved locking. WebKit Bugzilla
An out-of-bounds read was addressed with improved input validation. WebKit Bugzilla

Affected Devices
iPhone 8, iPhone 8 Plus, iPhone X, iPad 5th generation, iPad Pro 9.7-inch, and iPad Pro 12.9-inch 1st generation

On successful exploitation, it could allow an attacker to execute code.

  • CVSS V3 rated as Critical - 8.8 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution
    Refer to Apple advisory HT214034 for patching details.
    Vendor References
    Software Advisories
    Advisory ID Software Component Link
    HT214034 iOS URL Logo support.apple.com/en-in/HT214034