Advisory

Apple releases fixes for actively hacked WebKit issues to protect older devices

Take action: If you are using older models of Apple products, update to latest version of OS. Apple sees the WebKit vulnerability as serious enough to release patches even for older devices. It's time to patch.


Learn More

Apple has recently rolled out urgent security updates for older iPhone models, as well as certain Apple Watch and Apple TV versions, to address two zero-day WebKit vulnerabilities actively being exploited. The flaws potentially allow attackers to execute arbitrary code and access sensitive data via specially crafted web pages that exploit memory corruption and out-of-bounds issues in devices lacking the latest patches.

The latest updates, including iOS 16.7.3, iPadOS 16.7.3, tvOS 17.2, and watchOS 10.2, have introduced enhanced input validation and locking to mitigate these issues. The patches extend to a range of devices:

 

  • iPhone 8 and later,
  • iPad Pro (all models),
  • iPad Air 3rd generation and later,
  • iPad 5th generation and later,
  • iPad mini 5th generation and later
  • Apple TV HD and Apple TV 4K (all models)
  • Apple Watch Series 4 and later
Apple releases fixes for actively hacked WebKit issues to protect older devices