Published on 08 Sep 2023 | Updated on 08 Sep 2023
Apple has released security updates to address two zero-day vulnerabilities (CVE-2023-41064 and CVE-2023-41061). The vulnerabilities are reportedly being actively exploited.
The vulnerabilities are:
CVE-2023-41064 - A buffer overflow vulnerability that gets triggered when processing maliciously crafted images.
CVE-2023-41061 - A validation vulnerability that can be exploited using a malicious attachment.
Successful exploitation of the vulnerabilities could allow an attacker to perform arbitrary code execution on the affected products.
The vulnerabilities affect the following products:
Users of affected products are advised to update to the latest versions immediately:
Users are also advised to enable automatic software updates by going to Settings > General > Software Updates > Enable Automatic Updates.
More information is available here: