CERT: In warns of multiple vulnerabilities in Apple iOS, iPadOS; severity rating high
In its new vulnerability note, CERT-In is reporting multiple vulnerabilities in Apple iOS and iPadOS. These vulnerabilities could allow an attacker to execute arbitrary code, bypass security restrictions, elevated privileges, gain access to sensitive information or cause denial-of-service conditions on the targeted system.
According to CERT-In, these vulnerabilities exist in Apple iOS and iPadOS due to the following technical reasons:
“Type confusion, use-after-free flaw, permission issue and race condition in the Kernel component ; out-of-bounds read, use-after-free flaw and buffer overflow in the WebKit component; logic issue in the LaunchServices component; out-of-bounds read flaw in the IOSurfaceAccelerator; authorization issue in the Sandbox component;