Skip to content
  • Blog Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form

Apple Patches Major Security Flaws in iOS, macOS Platforms

Posted on May 12, 2025May 12, 2025 By CWS

Apple on Monday pushed out patches for safety vulnerabilities throughout the macOS, iPhone and iPad software program stack, warning that code-execution bugs that may very well be triggered just by opening a rigged picture, video or web site.

The brand new iOS 18.5 replace, rolled out alongside patches for iPadOS, covers crucial bugs in AppleJPEG and CoreMedia with a serious warning from Cupertino that attackers may craft malicious media information to run arbitrary code with the privileges of the focused app. 

The corporate additionally documented severe file-parsing vulnerabilities patched in CoreAudio, CoreGraphics, and ImageIO, every able to crashing apps or leaking knowledge if booby-trapped content material is opened.

The iOS 18.5 replace additionally offers cowl for not less than 9 documented WebKit flaws, some severe sufficient to result in exploits that enable a hostile web site to execute code or crash the Safari browser engine.

The corporate additionally patched a severe ‘mute-button’ flaw in FaceTime that exposes the audio dialog even after muting the microphone. 

Beneath the interface, Apple stated iOS 18.5 hardens the kernel in opposition to two memory-corruption points and cleans up a libexpat flaw (CVE-2024-8176) that impacts a broad vary of software program initiatives. 

Different notable fixes embody a problem in Baseband (CVE-2025-31214) that permits attackers in a privileged community place to intercept visitors on the brand new iPhone 16e line; a privilege escalation bug in mDNSResponder (CVE-2025-31222); a problem in Notes that expose knowledge from a locked iPhone display; and safety gaps in FrontBoard, iCloud Doc Sharing, and Mail Addressing.

Apple didn’t point out that any of the patched bugs have been exploited within the wildAdvertisement. Scroll to proceed studying.

The iOS 18.5 replace is out there for iPhone XS and later; the companion iPadOS launch covers the iPad Professional (2018 and newer), iPad Air 3, iPad 7, iPad mini 5, and later fashions.

The corporate additionally shipped main updates for macOS Sequoia, macOS Sonoma, macOS Ventura, WatchOS, tvOS and visionOS.

Associated: Apple Quashes Two Zero-Days With iOS, MacOS Patches

Associated:  Apple Ships iOS 18.3.2 to Repair Already-Exploited WebKit Flaw

Associated: New iOS Safety Characteristic Reboots Units to Defend Person Knowledge

Associated: Apple Patches 70 Safety Bugs Throughout iOS, macOS 

Security Week News Tags:Apple, Flaws, IOS, macOS, Major, Patches, Platforms, Security

Post navigation

Previous Post: Security Firm Andy Frain Says 100,000 People Impacted by Ransomware Attack
Next Post: How to Detect and Prevent DDoS Attacks

Related Posts

Alleged Conti, TrickBot Gang Leader Unmasked Security Week News
Adobe Patches Big Batch of Critical-Severity Software Flaws Security Week News
OpenAI to Help DoD With Cyber Defense Under New $200 Million Contract Security Week News
Undetectable Android Spyware Backfires, Leaks 62,000 User Logins Security Week News
‘EchoLeak’ AI Attack Enabled Theft of Sensitive Data via Microsoft 365 Copilot Security Week News
In Other News: Hackers Not Behind Blackout, CISO Docuseries, Dior Data Breach Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • NightEagle APT Exploits Microsoft Exchange Flaw to Target China’s Military and Tech Sectors
  • In Other News: Hacker Helps Kill Informants, Crylock Developer Sentenced, Ransomware Negotiator Probed
  • Critical HIKVISION ApplyCT Vulnerability Exposes Devices to Code Execution Attacks
  • Multiple PHP Vulnerabilities Allow SQL Injection & DoS Attacks
  • Massive Android Ad Fraud ‘IconAds’ Leverages Google Play to Attack Phone Users

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • NightEagle APT Exploits Microsoft Exchange Flaw to Target China’s Military and Tech Sectors
  • In Other News: Hacker Helps Kill Informants, Crylock Developer Sentenced, Ransomware Negotiator Probed
  • Critical HIKVISION ApplyCT Vulnerability Exposes Devices to Code Execution Attacks
  • Multiple PHP Vulnerabilities Allow SQL Injection & DoS Attacks
  • Massive Android Ad Fraud ‘IconAds’ Leverages Google Play to Attack Phone Users

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News