Report Incident
× Home Cybertech Africa 2023 2 DPO Rw-CSIRT Website About Rw-CSIRT Alerts Advisories About NCSA Documentation News & Events Topics Contact us Opportunities Privacy Policy

Alert: Apple Security Updates – November 2024

Apple has released urgent security updates to address a vulnerability affecting multiple products, including iOS, iPadOS, macOS, visionOS, and Safari. An attacker could exploit this vulnerability to gain control of an affected device.

Security Risks

Successful exploitation of this vulnerability enables an attacker to gain unauthorized control of an affected device by exploiting its identified weaknesses.

For the full list of security updates released by Apple, please refer to Apple security releases.

Recommended Actions

The National Cyber Security Authority (NCSA) recommends users and system administrators to:

  1. Upgrade, as soon as possible, to the latest supported version of installed Apple software in order to continue receiving technical support and security patches. The following software versions are released for upgrade:
    • iOS 18.1.1 and iPadOS 18.1.1: iPhone XS and later, iPad Pro 13-inch, iPad Pro 12.9-inch 3rd generation and later, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 7th generation and later, and iPad mini 5th generation and later.
    • iOS 17.7.2 and iPadOS 17.7.2: iPhone XS and later, iPad Pro 13-inch, iPad Pro 12.9-inch 2nd generation and later, iPad Pro 10.5-inch, iPad Pro 11-inch 1st generation and later, iPad Air 3rd generation and later, iPad 6th generation and later, and iPad mini 5th generation and later.
    • macOS Sequoia 15.1.1: macOS Sequoia.
    • visionOS 2.1.1: Apple Vision Pro.
    • Safari 18.1.1: macOS Monterey and macOS Ventura.
  2. Enable background updates or automatic updates
  3. Before any update task, ensure you have backup for your data.

For further information and support, please contact the National Cyber Security Authority (NCSA) by email to rwcsirt@ncsa.gov.rw or call us on 9009.

References

21 November 2024

© 2024 National Cyber Security Authority