Report Incident
× Home Cybertech Africa 2023 2 DPO Rw-CSIRT Website About Rw-CSIRT Alerts Advisories About NCSA Documentation News & Events Topics Contact us Opportunities Privacy Policy

Advisory - Critical Security Updates for Apple Devices

Description

Apple has released critical security updates to address zero-day vulnerabilities found in Apple devices.

The fixed zero-day vulnerabilities are CVE-2021-3060 and CVE-2021-30858.

Affected Products

  • iOS and iPadOS,
  • macOS,
  • watchOS,
  • tvOS.

The released urgent updates are iOS 14.8iPadOS 14.8, macOS Big Sur 11.6, watchOS 7.6.2, tvOS 14.7 and Safari 14.1.2.

Security Risks

Malicious actors can exploit the zero-day vulnerabilities by remotely executing malicious code and taking control of an unpatched Apple device.

For the list of security patches released by Apple, please refer to Apple security updates page.

Recommended Actions

The National Cyber Security Authority (NCSA) strongly recommends to users and administrators to:

  1. Immediately install the latest security updates to all Apple devices in use,
  2. Enable automatic software update in Apple devices,
  3. Before any update task, please ensure you have backup that can easily be restored.

For further information and support, please contact NCSA by email to rwcsirt@ncsa.gov.rw or call us on 9009

 

Reference

 

14 September 2021

© 2024 National Cyber Security Authority