Apple released security updates to address vulnerabilities in multiple products where a remote attacker could leverage them to take control of an affected system.

In the fix, the company handles 44 flaws in macOS Mojave, 37 in iOS, 23 in Safari, 32 in tvOS and 23 in watchOS. While that may seem like quite a few, some of the vulnerabilities overlap with the products.

RELATED STORIES
Apple Clears AirPort Holes
Apple Strengthens Privacy
Apple’s macOS Security Not Completely Secure
Apple Releases AirPort Fixes

In one of the iOS vulnerabilities for iPhone 5s and later, iPad Air and later, and iPod touch 6th generation and later, a remote attacker may be able to leak memory. An out-of-bounds read was addressed with improved input validation.

Patched elements are components or features include: AppleGraphicsControl, autofs, Bluetooth, Carbon Core, Core Data, Digital Touch, Disk Management, FaceTime, Found in Apps, Foundation, Grapher, Graphics Drivers, Heimdal, IOAcceleratorFamily, libxslt, Messages, Profiles, Quick Look, Safari, Security, Siri, Telephony, Time Machine, UIFoundation, Wallet and WebKit.

Schneider Bold

The new releases are: Security Updates 2019-044 High Sierra and 2019-044 Sierra for Mojave version 10.14.6, iOS 12.4, Safari 12.1.2, tvOS 12.4 and watchOS 5.3.

Vulnerabilities include code execution, memory leakage, information disclosure, universal cross-site scripting, a Gatekeeper bypass, and denial of service.

The following are the advisory for the products:
• macOS Mojave
• iOS
• Safari
• tvOS
• watchOS

ISSSource

Pin It on Pinterest

Share This