Along with new features, the iOS 18.3, iPadOS 18.3, and macOS Sequoia 15.3 updates that Apple released today include multiple security fixes, including a fix for vulnerability that may have been actively exploited on some devices.
According to Apple’s security support document, there was a CoreMedia bug that could be used to elevate privileges. Apple says that it is aware of a report that the bug could have been actively exploited against versions of iOS before iOS 17.2. Apple fixed the issue with improved memory management.
Apple also addressed over 20 other vulnerabilities. One could allow an attacker with physical access to an unlocked device to access the Photos app even when an iPhone is locked, and there were several issues with AirPlay that could allow attackers to execute code or crash apps.
Read more at MacRumors.com
