digital products downloads

Apple Releases iOS 26.3 for iPhone: 39 security issues fixed — should you update?

Apple Releases iOS 26.3 for iPhone: 39 security issues fixed — should you update?

Apple iOS 26.3 Released: Technology giant Apple has released iOS 26.3 and iPadOS 26.3 globally. The update, which was released in India on February 12, includes several important security fixes that address 39 vulnerabilities in the operating systems.

Apple iOS 26.3 Released: India vs Global

Apple officially released iOS 26.3 in India on February 12, although the update began rolling out globally on February 11. This means it became available to Indian users early in the morning.

Add Zee Business as a Preferred Source

Available for iPhone 11 and later models, this update includes patches ranging from the kernel and WebKit to accessibility features and wireless connectivity. Here are the key takeaways:

A Wide Range of Security Fixes

According to Apple’s security document, iOS 26.3 addresses issues that affect core system components, built-in apps, and frameworks that underpin everyday functionality.

Several of the fixed vulnerabilities could have allowed apps to gain elevated privileges. Notably, several issues in CoreServices and the kernel might have allowed a malicious app to gain root privileges. Other kernel-level flaws could have allowed unexpected system termination, memory corruption, or network traffic interception by an attacker in a privileged network position.

Sandbox protections were also strengthened. Apple fixed vulnerabilities in libxpc, Sandbox, and Sandbox Profiles that may have allowed apps to break out of their sandbox or access sensitive user data. Similarly, a flaw in Messages could have allowed a shortcut to bypass sandbox restrictions through improper handling of symbolic links.

WebKit, the browser engine that powers Safari and many in-app browsers, received multiple patches. The fixes address issues that could lead to denial-of-service, unexpected process crashes, and even user tracking through Safari web extensions. Given WebKit’s exposure to web content, these updates are particularly significant.

Actively Exploited Vulnerability Addressed

One of the most serious fixes involves the dynamic loader (dyld). Apple says the memory corruption issue could allow an attacker with memory write capability to execute arbitrary code. The company is aware of reports that this vulnerability may have been exploited in an “extremely sophisticated attack” targeting specific individuals on versions of iOS prior to iOS 26.

The issue was reported by Google’s Threat Analysis Group, underscoring the likelihood that the flaw was used in highly targeted attacks rather than widespread campaigns. Even so, the presence of active exploitation makes updating especially important.

Privacy and Lock Screen Protections Improved

Many of the vulnerabilities involved potential disclosures of sensitive user information, especially when the attacker has physical access to the locked device.

Several components, including accessibility features, Live Caption, VoiceOver, Photos, and UIKit, were patched to prevent sensitive information from being viewed on a locked device. In one case, a person with physical access could have accessed photos from the lock screen. In another, screenshots of sensitive data could potentially be taken during iPhone Mirroring with a Mac.

The tech giant has also fixed issues in Call History, Game Center, Spotlight, StoreKit, and Launch Services that could have inadvertently exposed data or allowed apps to create a list of installed apps.

Media, Images, and Connectivity

This update addresses vulnerabilities in CoreAudio, CoreMedia, ImageIO, and libexpat that could arise from processing maliciously crafted files. Depending on the component, successful exploitation might have led to app crashes, memory disclosure, or denial-of-service.

On the connectivity front, Bluetooth and Wi-Fi vulnerabilities were fixed. The Bluetooth issue could lead to a denial-of-service attack using specially crafted packets, while the Wi-Fi flaw could cause the system to shut down unexpectedly or corrupt kernel memory.

Apple iOS 26.3 Released: Supported devices

iOS 26.3 is available for iPhone 11 and later models. This update also includes the iPhone SE (2nd generation) and iPhone 17 series.

How to install Apple iOS 26.3 on your iPhone?

Here’s the step-by-step guide on how to update your iPhone to the newly released iOS 26.3:

Step 1: Open your iPhone and go to the “Settings” option.
Step 2: Now go to “General” and look for “Software Update.”
Note: Make sure your phone is connected to Wi-Fi and charging because the update size will be 1.98 GB (approximately) on Pro Max models.
Step 3: Now, click on “Update Now”.
Step 4: You can also choose the “Update Tonight” option.

Doonited Affiliated: Syndicate News Hunt

This report has been published as part of an auto-generated syndicated wire feed. Except for the headline, the content has not been modified or edited by Doonited

Source link

Related posts

Leave a Reply

Your email address will not be published. Required fields are marked *

Uttarakhand News Doonited
Social media & sharing icons powered by UltimatelySocial
Instagram
WhatsApp