June 5, 2023, 2:01 a.m. | Apple

The RISKS Digest catless.ncl.ac.uk

Apple on Thursday rolled out security updates
<https://support.apple.com/en-us/HT201222> to iOS, iPadOS, macOS, tvOS,
watchOS, and the Safari web browser to address three new zero-day flaws
that it said are being actively exploited in the wild.

The three security shortcomings are listed below --

- CVE-2023-32409 - A WebKit flaw that could be exploited by a malicious
actor to break out of the Web Content sandbox. It was addressed with
improved bounds checks.
- CVE-2023-28204 - An out-of-bounds read …

actively exploited address apple attack browser cve cve-2023-32409 emergency exploited flaw flaws patches safari security security updates under updates vulnerabilities watchos web web browser webkit zero-day zero-day flaws zero-day vulnerabilities

Information Security Engineers

@ D. E. Shaw Research | New York City

Technology Security Analyst

@ Halton Region | Oakville, Ontario, Canada

Senior Cyber Security Analyst

@ Valley Water | San Jose, CA

Technical Support Specialist (Cyber Security)

@ Sigma Software | Warsaw, Poland

OT Security Specialist

@ Adani Group | AHMEDABAD, GUJARAT, India

FS-EGRC-Manager-Cloud Security

@ EY | Bengaluru, KA, IN, 560048