Apple has released iOS 18.3.2 and iPadOS 18.3.2 updates with an emergency fix for a critical zero-day vulnerability in the Webkit browser engine that is being actively exploited by attackers.

Image source: Florian Olivo/unsplash.com

The vulnerability, identified as CVE-2025-24201, allows an attacker to access memory outside of its intended range. Apple said the flaw in the OS code could have been used in an “extremely sophisticated attack against specific target individuals.” “This is an additional fix for the security components that were improved with the release of iOS 17.2,” the company said. The vulnerability was addressed using improved checks to prevent unauthorized actions.

Apple’s announcement did not say whether the vulnerability was discovered by one of its researchers or someone outside the company, nor did it say when the attacks using the bug began or how long they lasted. “To protect our customers, Apple does not disclose, discuss, or confirm security issues until an investigation has been completed and fixes or releases are available,” the company added.

While this zero-day vulnerability was likely only used in targeted attacks, Apple recommended that users urgently install security updates to block potential ongoing attack attempts.

admin

Share
Published by
admin

Recent Posts

SnowRunner creators’ ‘revolutionary’ RoadCraft simulator earns ‘mixed’ reviews on Steam release

As promised, the “revolutionary” construction simulator RoadCraft from Saber Interactive (SnowRunner, Expeditions: A MudRunner Game)…

24 hours ago

Google has taught Meet to translate speech on the fly while preserving intonation and tone of voice

Google unveiled a new live translation feature for its Google Meet video conferencing service at…

24 hours ago

CMF Phone 2 Pro Review: Still Surprising

Last year, Nothing introduced the first smartphone under its budget sub-brand CMF by Nothing. The…

24 hours ago

Google Chrome Will Start Automatically Changing Weak or Hacked Passwords, But Will Ask for Permission First

At Google I/O, the company announced a new feature in Chrome that will automatically update…

24 hours ago

The End of Silent AI Video: Google Unveils Veo 3, the First Video Generator with Sound

Google presented the latest AI model for generating videos from text descriptions, Veo 3, at…

24 hours ago

GTX 750 Ti is no longer enough for the game: Ubisoft announced the system requirements of Rainbow Six Siege X

Publisher and developer Ubisoft has revealed the system requirements for Tom Clancy's Rainbow Six Siege…

2 days ago