Apple Updates
3222Warning Date
Severity Level
Warning Number
Target Sector
27 April, 2021
● Critical
2021-2834
All
Description:
Apple has released security update to address a vulnerability in the following product:
- iCloud for Windows 12.3
- Available for:
- Windows 10 and later via the Microsoft Store
- Available for:
- Xcode 12.5
- Available for:
- macOS Big Sur 11 and later
- Available for:
- Safari 14.1
- Available for:
- macOS Catalina and macOS Mojave
- Available for:
- macOS Big Sur 11.3
- Available for:
- macOS Big Sur
- Available for:
- Catalina
- Available for:
- macOS Catalina
- Available for:
- Mojave
- Available for:
- macOS Mojave
- Available for:
- iOS 14.5 and iPadOS 14.5
- Available for:
- iPhone 6s and later, iPad Pro (all models), iPad Air 2 and later, iPad 5th generation and later, iPad mini 4 and later, and iPod touch (7th generation)
- Available for:
- watchOS 7.4
- Available for:
- Apple Watch Series 3 and later
- Available for:
- tvOS 14.5
- Available for:
- Apple TV 4K and Apple
Threats:
Attacker could exploit this vulnerability by doing the following:
- Cross-site scripting (XSS)
- Sensitive information disclosure
- Escalation of privilege
Best practice and Recommendations:
The CERT team encourages users to review Apple security advisory and apply the necessary updates:
- https://support.apple.com/en-us/HT212317
- https://support.apple.com/en-us/HT212318
- https://support.apple.com/en-us/HT212321
- https://support.apple.com/en-us/HT212320
- https://support.apple.com/en-us/HT212324
- https://support.apple.com/en-us/HT212323
- https://support.apple.com/en-us/HT212325
- https://support.apple.com/en-us/HT212326