Re: APPLE-SA-03-11-2025-2 iOS 18.3.2 and iPadOS 18.3.2
Nick Boyce询问Apple安全公告中提到的iOS/iPadOS 18.3.2更新是否可通过iPhone上的"Software Update"功能获取。公告指出该更新仅通过iTunes和iOS设备的"Software Update"提供,不会出现在电脑的软件更新应用中。 2025-4-13 18:5:46 Author: seclists.org(查看原文) 阅读量:3 收藏

fulldisclosure logo

Full Disclosure mailing list archives


From: Nick Boyce <nick.boyce () gmail com>
Date: Sat, 5 Apr 2025 23:42:53 +0100

[Complete Apple product novice here (my devices all run a non-Apple
OS), but I'm asking for a friend]

Could someone please clarify the following part of the advisory for me:

This update is available through iTunes and Software Update
on your iOS device, and will not appear in your computer's
Software Update application

Does this mean the update will be available via the "Software Update"
feature on an iPhone - or not ?

The quoted paragraph of Apple's advisory is a bit
Schroedinger's-Cat-ish - the update is both available and not
available.

Thanks,

Nick


On Thu, 20 Mar 2025 at 12:29, Apple Product Security via
Fulldisclosure <fulldisclosure () seclists org> wrote:

[...]
APPLE-SA-03-11-2025-2 iOS 18.3.2 and iPadOS 18.3.2

iOS 18.3.2 and iPadOS 18.3.2 addresses the following issues.
Information about the security content is also available at
https://support.apple.com/122281.
[...]
Description: An out-of-bounds write issue was addressed with improved
checks to prevent unauthorized actions.
WebKit Bugzilla: 285858
CVE-2025-24201: Apple

This update is available through iTunes and Software Update on your
iOS device, and will not appear in your computer's Software Update
application, or in the Apple Downloads site. Make sure you have an
Internet connection and have installed the latest version of iTunes
from https://www.apple.com/itunes/
[...]
_______________________________________________
Sent through the Full Disclosure mailing list
https://nmap.org/mailman/listinfo/fulldisclosure
Web Archives & RSS: https://seclists.org/fulldisclosure/


Current thread:

  • Re: APPLE-SA-03-11-2025-2 iOS 18.3.2 and iPadOS 18.3.2 Nick Boyce (Apr 13)

文章来源: https://seclists.org/fulldisclosure/2025/Apr/16
如有侵权请联系:admin#unsafe.sh