Saturday, December 28, 2024
HomeAppleApple Released Security Updates for iOS, Safari , tvOS, iTunes & Fixed...

Apple Released Security Updates for iOS, Safari , tvOS, iTunes & Fixed Several Vulnerabilities

Published on

SIEM as a Service

Apple released security updates along with iOS 12.2 release and fixed 51 security vulnerabilities that affected various Apple products including iOS, macOS, Safari, tvOS, iTunes, iCloud.

iOS 12.2 released with the several security fixes that affected FaceTime, GeoServices, file, WebKit, Wi-Fi, Siri, Kernel and other iOS components.

macOS Mojave 10.14.4 security updates fixed the various WebKit holes, and kernel flaws that allow maliciously crafted NFS network share may lead to arbitrary code execution with system privileges.

- Advertisement - SIEM as a Service

Safari 12.1 update fixed vulnerabilities in Safari Readers let maliciously crafted webpage may lead to universal cross site scripting due to improper validation.

tvOS 12.2 fixes covered in the Apple TV 4K and Apple TV HD security flaws, iOS update, GeoServices flaw and one affecting Siri (CVE-2019-8502).

In this case, 19 iOS vulnerabilities were discovered in the Webkit browser engine used by Safari, Mail, App Store and other apps on macOS, iOS and Linux.

https://twitter.com/patrickwardle/status/1110283016117473281

Apple Released Security Updates

Name and information linkAvailable forRelease date
iCloud for Windows 7.11Windows 7 and later25 Mar 2019
iTunes 12.9.4 for WindowsWindows 7 and later25 Mar 2019
Safari 12.1macOS Sierra 10.12.6, macOS High Sierra 10.13.6, and Mojave 10.14.425 Mar 2019
macOS Mojave 10.14.4, Security Update 2019-002 High Sierra, Security Update 2019-002 SierramacOS Sierra 10.12.6, macOS High Sierra 10.13.6, and macOS Mojave 10.14.325 Mar 2019
tvOS 12.2Apple TV 4K and Apple TV HD previously Apple TV (4th generation)25 Mar 2019
Xcode 10.2macOS High Sierra 10.13.6 and later25 Mar 2019
iOS 12.2iPhone 5s and later, iPad Air and later, and iPod touch 6th generation25 Mar 2019

You can follow us on Linkedin, Twitter, Facebook for daily Cybersecurity updates also you can take the Best Cybersecurity courses online to keep your self-updated.

Also Read:

Multiple Malicious Fitness Tracker apps Abusing Apple’s Touch ID Feature To Steal Money From iOS Users

5 Things You Need To Do Before Selling iPhone

New Unpatched macOS Zero-day Flaw Allows Attackers to Read Passwords in Plain Text & System Data

Balaji
Balaji
BALAJI is an Ex-Security Researcher (Threat Research Labs) at Comodo Cybersecurity. Editor-in-Chief & Co-Founder - Cyber Security News & GBHackers On Security.

Latest articles

Lumma Stealer Attacking Users To Steal Login Credentials From Browsers

Researchers observed Lumma Stealer activity across multiple online samples, including PowerShell scripts and a...

New ‘OtterCookie’ Malware Attacking Software Developers Via Fake Job Offers

Palo Alto Networks reported the Contagious Interview campaign in November 2023, a financially motivated...

NjRat 2.3D Pro Edition Shared on GitHub: A Growing Cybersecurity Concern

The recent discovery of the NjRat 2.3D Professional Edition on GitHub has raised alarms...

Palo Alto Networks Vulnerability Puts Firewalls at Risk of DoS Attacks

A critical vulnerability, CVE-2024-3393, has been identified in the DNS Security feature of Palo...

API Security Webinar

72 Hours to Audit-Ready API Security

APIs present a unique challenge in this landscape, as risk assessment and mitigation are often hindered by incomplete API inventories and insufficient documentation.

Join Vivek Gopalan, VP of Products at Indusface, in this insightful webinar as he unveils a practical framework for discovering, assessing, and addressing open API vulnerabilities within just 72 hours.

Discussion points

API Discovery: Techniques to identify and map your public APIs comprehensively.
Vulnerability Scanning: Best practices for API vulnerability analysis and penetration testing.
Clean Reporting: Steps to generate a clean, audit-ready vulnerability report within 72 hours.

More like this

IBM AIX TCP/IP Vulnerability Lets Attackers Exploit to Launch Denial of Service Attack

IBM has issued a security bulletin warning of two vulnerabilities in its AIX operating...

Apache Auth-Bypass Vulnerability Lets Attackers Gain Control Over HugeGraph-Server

The Apache Software Foundation has issued a security alert regarding a critical vulnerability...

Node.js systeminformation Package Vulnerability Exposes Millions of Systems to RCE Attacks

A critical command injection vulnerability in the popular systeminformation npm package has recently been disclosed, exposing...