Apple patches exploited bug in Webkit

By

Updates available for iOS, macOS and iPadOS.

Apple has issued security patches for its macOS, iOS and iPadOS that handle a critical vulnerability exploited by unknown threat actors.

Apple patches exploited bug in Webkit

The CVE-2022-22620 bug is a use-after-free memory corruption bug in the WebKit rendering engine.

It has been actively exploited through maliciously crafted web content, allowing attackers to run arbitrary code on users' devices.

An anonymous researcher reported the vulnerability to Apple but it is not known who exploited it, and how many victims were attacked.

Apple is yet to provide technical details on the bug, or which platforms have been targeted by exploits.

Apple's operating systems have suffered several serious vulnerabilities lately, some of which appear to have been exploited by unknown attackers.

In January this year, Apple patched a memory corruption bug that was being exploited in the wild.

Prior to that, security researchers detailed how the Israeli spyware vendor NSO Group had taken advantage of unpatched flaws in Apple operating systems to compromise users' devices, at times with deadly consequences for them.

Got a news tip for our journalists? Share it with us anonymously here.
Copyright © iTnews.com.au . All rights reserved.
Tags:

Most Read Articles

First npm worm "Shai-Hulud" released in supply chain attack

First npm worm "Shai-Hulud" released in supply chain attack

"VoidProxy" PhishKit targets Google and Microsoft users

"VoidProxy" PhishKit targets Google and Microsoft users

Apple adds "mercenary spyware" protection to new A19 chip

Apple adds "mercenary spyware" protection to new A19 chip

Phishing attack nets enormous npm supply chain compromise

Phishing attack nets enormous npm supply chain compromise

Log In

  |  Forgot your password?