HomeSecurityApple: What security flaws did iOS 17.4.1 fix?

Apple: What security flaws did iOS 17.4.1 fix?

Just four days ago, on March 21, Apple announced the release of iOS 17.4.1 and iPadOS 17.4.1.

iOS 17.4.1

When releasing iOS 17.4.1 and iPadOS 17.4.1, Apple raised concerns about security issues that were fixed with the update. On the support page, Apple didn't mention CVE codes or common vulnerabilities and exploits used to analyze the flaws, but said: "More details are coming soon."

Read also: Apple iOS 17: Your iPhone will be able to become a smart display!

On the page announcing the updates , Apple emphasizes the need to install the updates immediately. Each operating system offers important bug fixes and security updates, and recommends that all users upgrade. Today, Apple updated its support page for security releases, adding information about previously unreported flaws. A patch addresses a problem in CoreMedia, the multimedia framework that Apple uses in its devices, including the iPhone.

This bug affected users of the following devices: iPhone XS and later, iPad Pro 12.9-inch 2nd generation and later, iPad Pro 10.5-inch, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 6th generation and later, and iPad mini 5th generation and later. A user of one of these devices, by tapping on an image with malicious content, could allow hackers to execute any commands or codes on the target device.

However, by installing the update, this vulnerability is removed from affected devices.

Apple had no indication that the vulnerability, simply stating that “An out-of-bounds issue occurred while signing in with enhanced authentication.” Based on the vulnerability number CVE-2024-1580, the bug was discovered by Nick Galloway of Google Project Zero.

See also: Apple: New AI features in iOS 18

The second vulnerability involved an issue in what Apple calls WebRTC, which enables “web browsers and mobile apps to communicate in real-time through application programming interfaces.” This vulnerability also affected the following devices: iPhone XS and later ,iPad Pro 12.9-inch 2nd generation and later, iPad Pro 10.5-inch, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 6th generation and later, and iPad mini 5th generation and later.

iOS 17.4.1 security flaw

If you haven't installed iOS 17.4.1 yet, go to Settings > General > Software Update and follow the instructions.

Source: phonearena

Selecting the team

🔒 Protect your privacy with Proton VPN

Swiss VPN from the creators of Proton Mail — strict no-logs policy, strong encryption, and built-in NetShield that blocks ads, trackers, & malware.

  • ✔ No-logs, based in Switzerland (except 14-Eyes)
  • ✔ NetShield: blocks ads, trackers & malicious domains
  • ✔ Covers all devices — free version available
Try Proton VPN for free — 30-day money-back guarantee →

The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.

📧
Subscribe to the SecNews Newsletter

The most important Security & Technology news in your Inbox.

SecNews
SecNewshttps://www.secnews.gr
In a world without fences and walls, who needs Gates and Windows

SEARCH

FOLLOW US

📧
Newsletter SecNews
The most important Security & Technology news in your inbox.

LIVE NEWS