Security News > 2022 > December > Apple fixes new Webkit zero-day used in attacks against iPhones

Apple fixes new Webkit zero-day used in attacks against iPhones
2022-12-13 20:48

In security updates released today, Apple has fixed the tenth zero-day vulnerability since the start of the year, with this latest one actively used in attacks against iPhones.

The vulnerability was disclosed in security bulletins released today for iOS/iPadOS 15.7.2, Safari 16.2, tvOS 16.2, and macOS Ventura 13.1, with Apple warning that the flaw "May have been actively exploited" against previous versions.

While Apple has disclosed that threat actors actively exploited the vulnerability, they have yet to provide any details on the attacks.

In August, it fixed two more zero-days in the iOS Kernel and WebKit In March, Apple patched two zero-day in the Intel Graphics Driver and AppleAVD. In February, Apple released security updates to address another WebKit zero-day bug exploited to target iPhones, iPads, and Macs.


News URL

https://www.bleepingcomputer.com/news/apple/apple-fixes-new-webkit-zero-day-used-in-attacks-against-iphones/

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Apple 68 212 1433 2208 257 4110
Webkit 2 0 1 6 0 7