iOS 18.4.1 patches two iPhone security flaws used in 'extremely sophisticated' attacks

On Wednesday, Apple pushed updates to most of its platforms: iOS 18.4.1, iPadOS 18.4.1, macOS 15.4.1, tvOS 18.4.1 and visionOS 2.4.1. They contain two security fixes for flaws that may have been used in real-world attacks, so it's wise to update your devices without too much delay.

Apple is aware of a report that both security issues "may have been exploited in an extremely sophisticated attack against specific targeted individuals on iOS."

One patched bug is in Apple's audio framework, CoreAudio. This memory corruption issue allowed malicious media files to execute code when processed as audio streams. The other relates to the Remote Participant Audio Control (RPAC) framework, which lets communications apps manage audio streams. That flaw allowed an attacker with arbitrary read / write capabilities to bypass Pointer Authentication (a security feature in Apple's processors).

Apple "strongly advises" all users to update their devices.

This article originally appeared on Engadget at https://www.engadget.com/mobile/smartphones/ios-1841-patches-two-iphone-security-flaws-used-in-extremely-sophisticated-attacks-194922877.html?src=rss https://www.engadget.com/mobile/smartphones/ios-1841-patches-two-iphone-security-flaws-used-in-extremely-sophisticated-attacks-194922877.html?src=rss
Utworzony 4d | 16 kwi 2025, 20:50:11


Zaloguj się, aby dodać komentarz

Inne posty w tej grupie

A bunch of robots ran a half-marathon alongside humans and it was incredibly goofy

Beijing held what’s being called the world’s first half-marathon for robots, allowing bipedal bots to compete alongside human runners, and as one might expect, ridiculousness ensued. The robots, wh

19 kwi 2025, 23:10:18 | Engadget
Doctor Who ‘Lux’ review: Hope can change the world

Spoilers for “Lux.”

It’s an interesting time to be a long-running science fantasy media property in the streaming TV age. Star Trek is in the grip of an

19 kwi 2025, 20:50:13 | Engadget
NASA’s Lucy spacecraft is about to have its second close encounter with an asteroid

A NASA spacecraft will make a close approach to an asteroid in the main belt on Sunday afternoon, in the second of several asteroid flybys planned for its 12-year mission to study remnants of the e

19 kwi 2025, 18:30:12 | Engadget
Star Wars Zero Company looks like XCOM with Jedi and droids

EA and Lucasfilm shared first look at

19 kwi 2025, 16:20:10 | Engadget
Real-time strategy game 'Tempest Rising' has been released early to all users

Tempest Rising, a real-time strategy game that's being called a "spiritual successor" a

19 kwi 2025, 13:50:15 | Engadget
Here are the coolest cars at New York International Auto Show 2025

This year marks the 125th anniversary of the New York International Auto Show (NYIAS), and despite concerns over tariffs, there are still a lot of manufacturers here showing off new models includin

18 kwi 2025, 21:40:18 | Engadget
Google is trying to get college students hooked on AI with a free year of Gemini Advanced

Under no circumstances should you let AI do your schoolwork for you, but Google has decided to make that option a little bit easier for the next year. The company is

18 kwi 2025, 21:40:17 | Engadget