CERT-in Warns Of High-Risk Security Flaws In Apple Products

CERT-in has given the vulnerabilities in Apple devices a severity rating of “High”.

Advertisement
Written by Nithya P Nair, Edited by Siddharth Suvarna | Updated: 30 January 2025 15:34 IST
Highlights
  • CERT-in has found multiple security flaws in Apple operating systems
  • The advisory affects a wide range of Apple products
  • The advisory was issued on January 28

The vulnerabilities affects Apple devices running older versions of iOS, iPadOS, and macOS

Photo Credit: Apple

Indian Computer Emergency Response Team (CERT-In) has issued a warning to Apple users concerning multiple vulnerabilities found in iPad, Mac and other models. The advisory was issued this week after the government agency discovered many security flaws in the operating system that powers Apple's tablets, iPhone models and laptops among others. These vulnerabilities, if exploited, could allow attackers to access sensitive information from the systems. 

CERT-in Issues Advisory Related to Vulnerabilities in Apple Devices

In an advisory dated January 28, CERT-In states that multiple vulnerabilities have been reported in Apple products. This could allow the attacker to access sensitive information, execute arbitrary code, bypass security restrictions, cause denial of service (DoS) conditions, bypass authentication, gain elevated privileges, data manipulation and perform spoofing attacks on the targeted system.

Advertisement

CERT-In's advisory outlines the affected Apple products —  Apple macOS Sequoia versions before 15.3, macOS Sonoma versions before 14.7.3, macOS Ventura versions before 13.7.3, and iPadOS versions before 17.7.4.

The iOS, tvOS and iPadOS versions prior to 18.3, visionOS versions prior to 2.3, Safari Versions before 18.3 and watchOS versions prior to 11.3 are also said to be affected by these vulnerabilities. The vulnerabilities are rated as "high risk".

Advertisement

The government agency states that the identified vulnerabilities stem from null pointer dereference, type confusion error, use after free error, out-of-bounds read, out-of-bounds write, handling of files, parsing a file, input validation, user-sensitive data, and more. The nodal agency notes that one of the reported vulnerabilities — CVE-2025-24085 — is a critical one and is actively exploited. It affects Apple devices running older versions of iOS, iPadOS, and macOS.

The advisory recommends users update their Apple devices to the latest versions of software to mitigate the risks. The government advisory comes a few days after Apple released its latest software update for iPhone, iPad and Mac users.

Advertisement

 

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. OTT Releases This Week (April 13 - April 19): Toaster, Matka King, Assi, and More
  2. DJI Osmo Pocket 4 Debuts With 1-inch CMOS Sensor, Improved Stabilisation
  3. Asus Zenbook S14 (2026) First Impressions
  4. MediaTek Dimensity 9600 Pro Could Feature This Powerful Performance Upgrade
  5. GeForce Now Explained: What Is It, Features, Subscription Plans and More
  1. Scientists Just Created the Largest 3D Map of the Universe Ever to Study Dark Energy
  2. Honor 600 Pro and Honor 600 Key Specifications, Features Revealed via Official Listing
  3. Ethereum NFT Platform Shuts Down After Blacklove Sale Falls Through
  4. Vivo X300 FE Storage Options Leaked Alongside Live Image With Telephoto Extender Kit
  5. Indian Smartphone Shipments Dropped to Six-Year Low in Q1 2026 as Vivo Topped Market, Nothing Led Growth: Counterpoint
  6. Canva Introduces Canva AI 2.0, Brings Agentic Capabilities and Memory to Perform Design Tasks
  7. MediaTek Dimensity 9600 Pro Leak Suggests 5GHz Clock Speed, High Benchmark Scores
  8. Oppo Find X9s Pro Key Specifications Surface Online as Launch Date Draws Closer
  9. Russian-Based Crypto Exchange Grinex Halts Operation After $14 Million Hack
  10. Assassin's Creed: Black Flag Resynced Will Reportedly Release in July, Reveal Set for Next Week
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.