Report Incident
× Home Cybertech Africa 2023 2 DPO Rw-CSIRT Website About Rw-CSIRT Alerts Advisories About NCSA Documentation News & Events Topics Contact us Opportunities Privacy Policy

Alert: Apple Security Updates – December 2023

Apple has released urgent security updates to address multiple flaws in iOS, iPadOS, macOS, WatchOS and Safari, including two actively exploited zero-day CVE-2023-42916 and CVE-2023-42917.
 
Security Risks
 
Successful exploitation of these vulnerabilities empowers an attacker to gain control over an affected device by exploiting its identified weaknesses.
 
For the full list of security updates released by Apple, please refer to Apple security releases.
 
Recommended Actions
 
The National Cyber Security Authority (NCSA) recommends users and system administrators to:
 
1. Upgrade, as soon as possible, to the latest supported version of installed Apple software in order to continue receiving technical support and security patches.
 
The following software versions are released for upgrade:
 
  • iOS 17.2 and iPadOS 17.2: iPhone XS and later, iPad Pro 12.9-inch 2nd generation and later, iPad Pro 10.5-inch, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 6th generation and later, iPad mini 5th generation and later.
  • iOS 16.7.3 and iPadOS 16.7.3: iPhone 8 and later, iPad Pro (all models), iPad Air 3rd generation and later, iPad 5th generation and later, and iPad mini 5th generation and later.
  • macOS Sonoma 14.2: for all Mac running macOS Sonoma.
  • macOS Ventura 13.6.3: for all Mac running macOS Ventura.
  • macOS Monterey 12.7.2:  for all Mac running macOS Monterey.
  • tvOS 17.2: Apple TV HD and Apple TV 4K (all models).
  • watchOS 10.2: Apple Watch Series 4 and later.
  • Safari 17.2: macOS Monterey and macOS Ventura.
 
2. Enable background updates or automatic updates
 
3. Before any update task, ensure you have backup for your data.
 
For further information and support, please contact the National Cyber Security Authority (NCSA) by emailto rwcsirt@ncsa.gov.rw or call us on 9009.
                                                                                                                 
References

13 December 2023

© 2025 National Cyber Security Authority