QID 610549

Date Published: 2024-03-08

QID 610549: Apple iOS 17.4 and iPadOS 17.4 Security Update Missing

iOS is a mobile operating system created and developed by Apple Inc.

Following security issues are observed :
A privacy issue was addressed with improved private data redaction for log entries. CVE-2024-23243
A memory corruption issue was addressed with improved validation. CVE-2024-23225 RTKit Available for
A memory corruption issue was addressed with improved validation. CVE-2024-23296 Safari Private Browsing Available for
A logic issue was addressed with improved state management. CVE-2024-23256

Affected Devices
iPhone XS and later, iPad Pro 12.9-inch 2nd generation and later, iPad Pro 10.5-inch, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 6th generation and later, and iPad mini 5th generation and later

On successful exploitation, it could allow an attacker to execute code.

  • CVSS V3 rated as High - 7.8 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution
    Refer to Apple advisory HT214081 for patching details.
    Vendor References
    Software Advisories
    Advisory ID Software Component Link
    HT214081 iOS URL Logo support.apple.com/en-in/HT214081