Skip to content
  • Blog Home
  • Cyber Map
  • About Us – Contact
  • Disclaimer
  • Terms and Rules
  • Privacy Policy
Cyber Web Spider Blog – News

Cyber Web Spider Blog – News

Globe Threat Map provides a real-time, interactive 3D visualization of global cyber threats. Monitor DDoS attacks, malware, and hacking attempts with geo-located arcs on a rotating globe. Stay informed with live logs and archive stats.

  • Home
  • Cyber Map
  • Cyber Security News
  • Security Week News
  • The Hacker News
  • How To?
  • Toggle search form

Apple Patches Major Security Flaws in iOS, macOS Platforms

Posted on May 12, 2025May 12, 2025 By CWS

Apple on Monday pushed out patches for safety vulnerabilities throughout the macOS, iPhone and iPad software program stack, warning that code-execution bugs that may very well be triggered just by opening a rigged picture, video or web site.

The brand new iOS 18.5 replace, rolled out alongside patches for iPadOS, covers crucial bugs in AppleJPEG and CoreMedia with a serious warning from Cupertino that attackers may craft malicious media information to run arbitrary code with the privileges of the focused app. 

The corporate additionally documented severe file-parsing vulnerabilities patched in CoreAudio, CoreGraphics, and ImageIO, every able to crashing apps or leaking knowledge if booby-trapped content material is opened.

The iOS 18.5 replace additionally offers cowl for not less than 9 documented WebKit flaws, some severe sufficient to result in exploits that enable a hostile web site to execute code or crash the Safari browser engine.

The corporate additionally patched a severe ‘mute-button’ flaw in FaceTime that exposes the audio dialog even after muting the microphone. 

Beneath the interface, Apple stated iOS 18.5 hardens the kernel in opposition to two memory-corruption points and cleans up a libexpat flaw (CVE-2024-8176) that impacts a broad vary of software program initiatives. 

Different notable fixes embody a problem in Baseband (CVE-2025-31214) that permits attackers in a privileged community place to intercept visitors on the brand new iPhone 16e line; a privilege escalation bug in mDNSResponder (CVE-2025-31222); a problem in Notes that expose knowledge from a locked iPhone display; and safety gaps in FrontBoard, iCloud Doc Sharing, and Mail Addressing.

Apple didn’t point out that any of the patched bugs have been exploited within the wildAdvertisement. Scroll to proceed studying.

The iOS 18.5 replace is out there for iPhone XS and later; the companion iPadOS launch covers the iPad Professional (2018 and newer), iPad Air 3, iPad 7, iPad mini 5, and later fashions.

The corporate additionally shipped main updates for macOS Sequoia, macOS Sonoma, macOS Ventura, WatchOS, tvOS and visionOS.

Associated: Apple Quashes Two Zero-Days With iOS, MacOS Patches

Associated:  Apple Ships iOS 18.3.2 to Repair Already-Exploited WebKit Flaw

Associated: New iOS Safety Characteristic Reboots Units to Defend Person Knowledge

Associated: Apple Patches 70 Safety Bugs Throughout iOS, macOS 

Security Week News Tags:Apple, Flaws, IOS, macOS, Major, Patches, Platforms, Security

Post navigation

Previous Post: Security Firm Andy Frain Says 100,000 People Impacted by Ransomware Attack
Next Post: How to Detect and Prevent DDoS Attacks

Related Posts

How Scammers Are Using AI to Steal College Financial Aid Security Week News
Motors Theme Vulnerability Exploited to Hack WordPress Websites Security Week News
Hacker Conversations: Rachel Tobac and the Art of Social Engineering Security Week News
China Issues Warrants for Alleged Taiwanese Hackers and Bans a Business for Pro-Independence Links Security Week News
Critical Vulnerability Patched in Citrix NetScaler Security Week News
Rising Tides: Kelley Misata on Bringing Cybersecurity to Nonprofits Security Week News

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News

Recent Posts

  • Massive Android Ad Fraud ‘IconAds’ Leverages Google Play to Attack Phone Users
  • Your AI Agents Might Be Leaking Data — Watch this Webinar to Learn How to Stop It
  • Google Ordered to Pay $314M for Misusing Android Users’ Cellular Data Without Permission
  • New Hpingbot Abusing Pastebin for Payload Delivery and Hping3 Tool to Launch DDoS Attacks
  • Azure API Vulnerabilities Leak VPN Keys and Built-In Roles Allow Over-Privileged Access

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Archives

  • July 2025
  • June 2025
  • May 2025

Recent Posts

  • Massive Android Ad Fraud ‘IconAds’ Leverages Google Play to Attack Phone Users
  • Your AI Agents Might Be Leaking Data — Watch this Webinar to Learn How to Stop It
  • Google Ordered to Pay $314M for Misusing Android Users’ Cellular Data Without Permission
  • New Hpingbot Abusing Pastebin for Payload Delivery and Hping3 Tool to Launch DDoS Attacks
  • Azure API Vulnerabilities Leak VPN Keys and Built-In Roles Allow Over-Privileged Access

Pages

  • About Us – Contact
  • Disclaimer
  • Privacy Policy
  • Terms and Rules

Categories

  • Cyber Security News
  • How To?
  • Security Week News
  • The Hacker News