

Your device takes into account its current version (its not going to show 14.8.1 if youre already on 14.8.1. Impact: A malicious website using Content Security Policy reports may be able to leak information via redirect behaviorĭescription: An information leakage issue was addressed. The update server returns an asset for iOS 14.8.1. Impact: A user may be able to view restricted content from the Lock Screenĭescription: A Lock Screen issue was addressed with improved state management.ĭescription: A use after free issue was addressed with improved memory management.ĬVE-2021-30902: 08Tc3wBB of ZecOps Mobile EDR Team Impact: An application may be able to execute arbitrary code with kernel privilegesĭescription: This issue was addressed with improved checks.

Apple is aware of a report that this issue may have been actively exploited.ĭescription: A memory corruption issue was addressed with improved memory handling. Impact: An application may be able to execute arbitrary code with kernel privileges. Impact: A malicious application may be able to execute arbitrary code with kernel privilegesĭescription: An out-of-bounds write issue was addressed with improved bounds checking.ĬVE-2021-30900: Yinyi Wu of Ant Security Light-Year Lab
APPLE SECURITY UPDATE 14.8 PDF
Impact: Processing a maliciously crafted PDF may lead to arbitrary code executionĭescription: An out-of-bounds write was addressed with improved input validation. Impact: A local attacker may be able to cause unexpected application termination or arbitrary code executionĭescription: An uncontrolled format string issue was addressed with improved input validation.ĬVE-2021-30903: Gongyu Ma of Hangzhou Dianzi University This issue was addressed with improved input validation.ĬVE-2021-30917: Alexandru-Vlad Niculae and Mateusz Jurczyk of Google Project Zero Impact: Processing a maliciously crafted image may lead to arbitrary code executionĭescription: A memory corruption issue in the processing of ICC profiles was addressed with improved input validation.ĭescription: A memory corruption issue existed in the processing of ICC profiles. Apple has published a full support document detailing what’s new in iOS 14.8, watchOS 7.6.2, iPadOS 14.8, and macOS. Impact: A malicious application may be able to elevate privilegesĭescription: An integer overflow was addressed through improved input validation. Apple says iOS 14.8 patches iPhone attack that defeated Blastdoor protections. You can update your iPhone, going into the.
APPLE SECURITY UPDATE 14.8 FOR FREE
Available for: iPhone 6s and later, iPad Pro (all models), iPad Air 2 and later, iPad 5th generation and later, iPad mini 4 and later, and iPod touch (7th generation) The iOS 14.8 update can be downloaded for free and is available on all eligible devices via the Settings app.
