QID 610539

Date Published: 2024-01-23

QID 610539: Apple iOS 16.7.5 and iPadOS 16.7.5 Security Update Missing (HT214063)

iOS is a mobile operating system created and developed by Apple Inc.

Following security issues are observed :
A privacy issue was addressed with improved private data redaction for log entries. CVE-2023-42937
The issue was addressed with improved memory handling. CVE-2024-23212
Multiple issues were addressed by updating to curl version 8.4.0. CVE-2023-38545 CVE-2023-38039 CVE-2023-38546 CVE-2023-42915 ImageIO Available for
The issue was addressed with improved checks. CVE-2023-42888
A privacy issue was addressed with improved handling of user preferences. CVE-2024-23211
The issue was addressed with improved memory handling. WebKit Bugzilla
Multiple memory corruption issues were addressed with improved memory handling. WebKit Bugzilla
An access issue was addressed with improved access restrictions. WebKit Bugzilla
A type confusion issue was addressed with improved checks. WebKit Bugzilla

Affected Devices
iPhone 8, iPhone 8 Plus, iPhone X, iPad 5th generation, iPad Pro 9.7-inch, and iPad Pro 12.9-inch 1st generation

On successful exploitation, it could allow an attacker to execute code.

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution
    Refer to Apple advisory HT214063 for patching details.
    Vendor References
    Software Advisories
    Advisory ID Software Component Link
    HT214063 iOS URL Logo support.apple.com/en-in/HT214063