Apple Products Multiple Vulnerabilities
RISK: High Risk
TYPE: Operating Systems - Mobile & Apps
Multiple vulnerabilities were identified in Apple Products. A remote attacker could exploit some of these vulnerabilities to trigger remote code execution, denial of service condition, elevation of privilege, sensitive information disclosure, data manipulation and security restriction bypass on the targeted system.
Note:
CVE-2026-20700 is being exploited in the wild. Apple iOS, iPadOS, macOS, tvOS, watchOS, and visionOS contain an improper restriction of operations within the bounds of a memory buffer vulnerability that could allow an attacker with memory write the capability to execute arbitrary code. Hence, the risk level is rated as High Risk.
Impact
- Denial of Service
- Elevation of Privilege
- Security Restriction Bypass
- Information Disclosure
- Data Manipulation
- Remote Code Execution
System / Technologies affected
- Versions prior to iOS 18.7.5 and iPadOS 18.7.5
- Versions prior to iOS 26.3 and iPadOS 26.3
- Versions prior to macOS Sonoma 14.8.4
- Versions prior to macOS Sequoia 15.7.4
- Versions prior to macOS Tahoe 26.3
- Versions prior to tvOS 26.3
- Versions prior to watchOS 26.3
- Versions prior to visionOS 26.3
- Versions prior to Safari 26.3
Solutions
Before installation of the software, please visit the vendor web-site for more details.
Apply fixes issued by the vendor:
- iOS 18.7.5 and iPadOS 18.7.5
- iOS 26.3 and iPadOS 26.3
- macOS Sonoma 14.8.4
- macOS Sequoia 15.7.4
- macOS Tahoe 26.3
- tvOS 26.3
- watchOS 26.3
- visionOS 26.3
- Safari 26.3
Vulnerability Identifier
- CVE-2025-14174
- CVE-2025-43338
- CVE-2025-43402
- CVE-2025-43403
- CVE-2025-43417
- CVE-2025-43529
- CVE-2025-43533
- CVE-2025-43537
- CVE-2025-46283
- CVE-2025-46290
- CVE-2025-46300
- CVE-2025-46301
- CVE-2025-46302
- CVE-2025-46303
- CVE-2025-46304
- CVE-2025-46305
- CVE-2025-46310
- CVE-2025-59375
- CVE-2026-20601
- CVE-2026-20602
- CVE-2026-20603
- CVE-2026-20605
- CVE-2026-20606
- CVE-2026-20608
- CVE-2026-20609
- CVE-2026-20610
- CVE-2026-20611
- CVE-2026-20612
- CVE-2026-20614
- CVE-2026-20615
- CVE-2026-20616
- CVE-2026-20617
- CVE-2026-20618
- CVE-2026-20619
- CVE-2026-20620
- CVE-2026-20621
- CVE-2026-20623
- CVE-2026-20624
- CVE-2026-20625
- CVE-2026-20626
- CVE-2026-20627
- CVE-2026-20628
- CVE-2026-20629
- CVE-2026-20630
- CVE-2026-20634
- CVE-2026-20635
- CVE-2026-20636
- CVE-2026-20638
- CVE-2026-20640
- CVE-2026-20641
- CVE-2026-20642
- CVE-2026-20644
- CVE-2026-20645
- CVE-2026-20646
- CVE-2026-20647
- CVE-2026-20648
- CVE-2026-20649
- CVE-2026-20650
- CVE-2026-20652
- CVE-2026-20653
- CVE-2026-20654
- CVE-2026-20655
- CVE-2026-20656
- CVE-2026-20658
- CVE-2026-20660
- CVE-2026-20661
- CVE-2026-20662
- CVE-2026-20663
- CVE-2026-20666
- CVE-2026-20667
- CVE-2026-20669
- CVE-2026-20671
- CVE-2026-20673
- CVE-2026-20674
- CVE-2026-20675
- CVE-2026-20676
- CVE-2026-20677
- CVE-2026-20678
- CVE-2026-20680
- CVE-2026-20681
- CVE-2026-20682
- CVE-2026-20700
Source
Related Link
- https://support.apple.com/en-hk/126346
- https://support.apple.com/en-hk/126347
- https://support.apple.com/en-hk/126348
- https://support.apple.com/en-hk/126349
- https://support.apple.com/en-hk/126350
- https://support.apple.com/en-hk/126351
- https://support.apple.com/en-hk/126352
- https://support.apple.com/en-hk/126353
- https://support.apple.com/en-hk/126354
- https://www.cisa.gov/news-events/alerts/2026/02/12/cisa-adds-four-known-exploited-vulnerabilities-catalog
沒有留言:
發佈留言