SIGforum.com    Main Page  Hop To Forum Categories  The Lounge    Apple Releases Updates to Fix Three Zero-Day Vulnerabilities (ALL Apple Platforms)
Go
New
Find
Notify
Tools
Reply
  
Apple Releases Updates to Fix Three Zero-Day Vulnerabilities (ALL Apple Platforms) Login/Join 
Nullus Anxietas
Picture of ensigmatic
posted
From one of my computer and network security newsletters...
quote:

Apple Releases Updates to Fix Three Zero-Days
(May 24, 2021)
Apple released updates to macOS 11.4, 10.15, 10.14; iOS and iPadOS 14.6; watchOS 7.5 and tvOS 14.6 to address three zero day vulnerabilities hackers exploited in the wild.  The XCSSET malware exploited the weakness in CVE-2021-30713 to bypass macOS privacy protections while CVE-2021-30663 and CVE-2021-30665 impact WebKit on Apple TV 4K and Apple TV HD devices. Zero-day vulnerabilities have been showing up more in Apple’s security advisories, often tagged as exploited prior to fixes being released.

N.B.: These are being actively exploited in the wild!

Related articles:
- https://support.apple.com/en-us/HT201222
- https://support.apple.com/en-us/HT212529
- https://support.apple.com/en-us/HT212532
- https://www.jamf.com/blog/zero-day-tcc-bypass-discovered-in-xcsset-malware/
- https://www.bleepingcomputer.com/news/security/apple-fixes-three-zero-days-one-abused-by-xcsset-macos-malware/
- https://www.theregister.com/2021/05/24/ios_macos_patches/
- https://arstechnica.com/gadgets/2021/05/hackers-exploit-a-macos-0day-that-allows-them-to-screenshot-infected-macs/



"America is at that awkward stage. It's too late to work within the system,,,, but too early to shoot the bastards." -- Claire Wolfe
"If we let things terrify us, life will not be worth living." -- Seneca the Younger, Roman Stoic philosopher
 
Posts: 26034 | Location: S.E. Michigan | Registered: January 06, 2008Reply With QuoteReport This Post
Member
Picture of Prefontaine
posted Hide Post
Thanks. Updated everything tonight.



What am I doing? I'm talking to an empty telephone
 
Posts: 13143 | Location: Down South | Registered: January 16, 2010Reply With QuoteReport This Post
Member
Picture of CQB60
posted Hide Post
Thanks for the FYI Smile


______________________________________________
Life is short. It’s shorter with the wrong gun…
 
Posts: 13873 | Location: VIrtual | Registered: November 13, 2009Reply With QuoteReport This Post
Nullus Anxietas
Picture of ensigmatic
posted Hide Post
Y'all are welcome Smile



"America is at that awkward stage. It's too late to work within the system,,,, but too early to shoot the bastards." -- Claire Wolfe
"If we let things terrify us, life will not be worth living." -- Seneca the Younger, Roman Stoic philosopher
 
Posts: 26034 | Location: S.E. Michigan | Registered: January 06, 2008Reply With QuoteReport This Post
Told cops where to go for over 29 years…
Picture of 911Boss
posted Hide Post
Mac, iPad, iPhone, Watch all updated...






What part of "...Shall not be infringed" don't you understand???


 
Posts: 11420 | Location: Western WA state for just a few more years... | Registered: February 17, 2006Reply With QuoteReport This Post
Member
posted Hide Post
Thanks, updating right now.
 
Posts: 791 | Location: SW Michigan | Registered: January 21, 2009Reply With QuoteReport This Post
Nullus Anxietas
Picture of ensigmatic
posted Hide Post
I'm going to give this one last bump, for the weekend crowd. (Normally would not do this, but this round of updates appears to be pretty critical.)



"America is at that awkward stage. It's too late to work within the system,,,, but too early to shoot the bastards." -- Claire Wolfe
"If we let things terrify us, life will not be worth living." -- Seneca the Younger, Roman Stoic philosopher
 
Posts: 26034 | Location: S.E. Michigan | Registered: January 06, 2008Reply With QuoteReport This Post
Res ipsa loquitur
Picture of BB61
posted Hide Post
Thanks. We are doing the computers and iPad right now.


__________________________

 
Posts: 12662 | Registered: October 13, 2002Reply With QuoteReport This Post
  Powered by Social Strata  
 

SIGforum.com    Main Page  Hop To Forum Categories  The Lounge    Apple Releases Updates to Fix Three Zero-Day Vulnerabilities (ALL Apple Platforms)

© SIGforum 2024