Apple Released Security Update – Several Bugs are Fixed That Affected iOS, iCloud, Safari, macOS

Well, the security update for Xcode, it’s an integrated development atmosphere for the tech giant Apple’s macOS, including a suite of software development tools produced by Apple for creating software for macOS, iOS, iPad, watchOS, and tvOS, concedes no details regarding fixed security issues.

However, the tech giant Apple has recently published security updates to address vulnerabilities in various Apple products. An attacker could easily utilize some of these vulnerabilities to take charge of a simulated system. Now without wasting any more time, let’s get started and simply explore the whole list of security updates released by the tech giant Apple.

iCloud for Windows 7.18 and iCloud for Windows 10.9.3

Well, in iCloud, there are ten security vulnerabilities in the WebKit browser engine, and six of which could drive to temporary code execution if maliciously crafted web content is prepared. And three buffer overflow flaws in libxml2, a software library for parsing XML documents.

iTunes 12.10.5 for Windows

It’s the same as iCloud, as it has three buffer overflow flaws in libxml2, a software library for parsing XML documents. Moreover, ten security vulnerabilities in the WebKit browser engine, and six of which could drive to temporary code execution if maliciously crafted web content is prepared.

iOS 13.4 and iPadOS 13.4

Well, iOS had the most vulnerabilities mended with Sophos noting Kernel bugs CVE-2020-9785 and CVE-2020-3919 and CVE-2020-3914, these all are especially dangerous and need quick patching. Moreover, in this segment, it also involved the Webkit vulnerability CVE-2020-3899, which can enable arbitrary code execution.

Safari 13.1

Safari gives all the WebKit fixes and plugs a loophole that could enable a malicious iframe to use another website’s download settings, that’s it, this is the only update offered by the tech giant Apple for its well-known web browser, Safari.

watchOS 6.2

WatchOS update also fixes that latest flaw, and three libxml2 vulnerabilities, various of the code execution defects impairing WebKit. The kernel security holes and a logic issue was affecting Messages, which could enable a person with physical access to a locked device to reply to a message even when replies are useless.

tvOS 13.4

Well, in total tvOS had 20 issues, and two of which could enable someone to learn repressed memory.

macOS Catalina 10.15.4, Security Update 2020-002 Mojave, Security Update 2020-002 High Sierra

The macOS had 27 patches turned out, and six of them could result in arbitrary code execution.

Xcode 11.4

Well, in the case of Xcode, the updates are not disclosed, according to the policy of Apple. And not only that, even they will not confirm any security issues until an investigation has occurred and patches and releases are possible.

Basically, here we have gathered all the recent security updates of iOS, iCloud, Safari, macOS, watchOS, tvOS, and iTunes. However, all these updates are user friendly and very necessary to apply.

Thus, the Cybersecurity and Infrastructure Security Agency (CISA) supports users and officials to examine the Apple security pages for the following products and to study all the provided updates, so that they can apply it efficiently.

Guru Baran

Gurubaran KS is a cybersecurity analyst, and Journalist with a strong focus on emerging threats and digital defense strategies. He is the Co-Founder and Editor-in-Chief of Cyber Security News, where he leads editorial coverage on global cybersecurity developments.

Recent Posts

Hackers Target AI Infrastructure With RCE, Prompt Injection and API Key Theft

Hackers are actively probing AI systems, turning exposed gateways and agent tools into routes for…

3 hours ago

Hackers Make Phishing Pages Change Their Code Every Time Someone Opens Them

Hackers are making some phishing pages harder to track by changing the code delivered to…

4 hours ago

Iran-Linked Hackers Reportedly Knock UK Power Plant Offline for Four Days

A cyber incident reportedly forced a British power plant to halt operations for about four…

5 hours ago

Russian Hackers Use New HOOKEDGE Malware to Spy on European Defense and Diplomatic Targets

Russian hackers have used a new backdoor called HOOKEDGE to target defense manufacturers, government bodies,…

5 hours ago

Ransomware Gang Claims AI Can Analyze 700GB of Stolen Data Every Hour

TITAN ransomware is pairing file encryption with an ambitious claim: artificial intelligence that can sort…

5 hours ago

Hackers Compromise Hundreds of WordPress Sites to Deploy Amatera Stealer via ClickFix

A fake student resume is being used to place a remote-access tool on researchers’ Windows…

7 hours ago