📜 ⬆️ ⬇️

Apple has released a set of updates for its products.

Apple has released a set of updates for its products, which fix all sorts of security vulnerabilities. The updates affected iOS mobile operating system, desktop OS X Mavericks, Safari web browser, etc. Many of the fixed vulnerabilities in OS X make it possible for attackers to elevate their privileges in the system (Local Privelege Escalation), as well as bypassing ASLR in kernel mode and getting pointers on important system data structures.



About the corrected vulnerabilities for iOS 8, we wrote in detail in a previous post. Before the release of this set of updates, the company also refined the security of the iCloud service, extending to it the effect of its two-factor 2FA authentication mechanism. Earlier, we wrote that the company was criticized by security experts (Elcomsoft), because even with the 2FA option enabled, attackers could access the image of all stored data on the device through backup files. Now this “mistake” is already closed .
')


Safari fixed vulnerabilities (WebKit component) are relevant for OS X Lion v10.7.5, OS X Lion Server v10.7.5, OS X Mountain Lion v10.8.5, OS X Mavericks v10.9.4.



Below are the fixes for OS X Mavericks vulnerabilities.





A complete list of updates for all products can be found on the Apple website.

We recommend that users update the appropriate software.

image
be secure.

Source: https://habr.com/ru/post/237387/


All Articles