- Home
- Alerts & Advisories
- Alerts
- Active Exploitation of Zero-Day Vulnerabilities in Apple Products
Active Exploitation of Zero-Day Vulnerabilities in Apple Products
13 December 2023
Apple has released security updates to address two zero-day vulnerabilities (CVE-2023-42898 and CVE-2023-42890) in their Apple products. The vulnerabilities are reportedly being actively exploited.
Successful exploitation of these vulnerabilities could allow an attacker to perform arbitrary code execution.
The vulnerabilities affect the following products:
macOS Sonoma
Apple TV HD and Apple TV 4K (all models)
iPhone XS and later
iPad Pro 12.9-inch 2nd generation and later
iPad Pro 10.5-inch/11-inch 1st generation and later
iPad Air 3rd generation and later
iPad 6th generation and later
iPad mini 5th generation and later
Apple Watch Series 4 and later
Users and administrators of the affected products are advised to update to the latest versions immediately.
Users are also advised to enable automatic software updates by going to Settings > General > Software Updates > Enable Automatic Updates.
More information is available here:
https://support.apple.com/en-us/HT214036
https://support.apple.com/en-us/HT214040
https://support.apple.com/en-us/HT214035
https://support.apple.com/en-us/HT214041
https://securityaffairs.com/155669/security/apple-released-ios-17-2.html#google_vignette