QID 610538

Date Published: 2024-01-23

QID 610538: Apple iOS 17.3 and iPadOS 17.3 Security Update Missing (HT214059)

iOS is a mobile operating system created and developed by Apple Inc.

Following security issues are observed :
The issue was addressed with improved memory handling. CVE-2024-23212
A timing side-channel issue was addressed with improvements to constant-time computation in cryptographic functions. CVE-2024-23218
The issue was addressed with improved memory handling. CVE-2024-23208
This issue was addressed with improved redaction of sensitive information. CVE-2024-23207
A privacy issue was addressed with improved handling of files. CVE-2024-23223
The issue was addressed with improved authentication. CVE-2024-23219
A privacy issue was addressed with improved handling of user preferences. CVE-2024-23211
The issue was addressed with additional permissions checks. CVE-2024-23203
A privacy issue was addressed with improved handling of temporary files. CVE-2024-23217
An issue was addressed with improved handling of temporary files. CVE-2024-23215
This issue was addressed with improved redaction of sensitive information. CVE-2024-23210
An access issue was addressed with improved access restrictions. WebKit Bugzilla
The issue was addressed with improved memory handling. WebKit Bugzilla
Multiple memory corruption issues were addressed with improved memory handling. WebKit Bugzilla
A type confusion issue was addressed with improved checks. WebKit Bugzilla

Affected Devices
iPhone XS and later, iPad Pro 12.9-inch 2nd generation and later, iPad Pro 10.5-inch, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 6th generation and later, and iPad mini 5th generation and later

On successful exploitation, it could allow an attacker to execute code.

  • CVSS V3 rated as Critical - 8.8 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution
    Refer to Apple advisory HT214059 for patching details.
    Vendor References
    Software Advisories
    Advisory ID Software Component Link
    HT214059 iOS URL Logo support.apple.com/en-in/HT214059