01_WhatisandhowdoesSSO_blog_588x528_3x_Sher2
breach-prevention-hero

 

 

A Remote Code Execution vulnerability has been identified in certain versions of Apple WebKit, affecting iOS and macOS devices. Affected users of these devices should update their devices as soon as possible.

 

 

Alert status

 

CRITICAL

 

Background / What has happened?

 

The ACSC is tracking a Remote Code Execution vulnerability in Apple WebKit. Apple WebKit is a component used extensively in iOS and macOS devices to display web pages. Apple iOS and macOS products are used widely in Australia, organisations and users should take immediate action and update their devices to prevent compromise.

CVE-2022-22620 allows a malicious actor to execute arbitrary code on an affected device if maliciously crafted web content is processed. Further information on this vulnerability is available in Apple’s security advisories.