	{"id":94391,"date":"2021-09-13T23:50:34","date_gmt":"2021-09-14T06:50:34","guid":{"rendered":"https:\/\/www.intego.com\/mac-security-blog\/?p=94391"},"modified":"2021-09-15T13:30:03","modified_gmt":"2021-09-15T20:30:03","slug":"apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos","status":"publish","type":"post","link":"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/","title":{"rendered":"Apple patches two in-the-wild vulnerabilities for macOS, iOS, iPadOS, watchOS"},"content":{"rendered":"<p><img loading=\"lazy\" class=\"aligncenter size-full wp-image-86452\" src=\"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2019\/03\/ios-software-update-available-icon-600x300-e1558142227486.png\" alt=\"\" width=\"600\" height=\"300\" srcset=\"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2019\/03\/ios-software-update-available-icon-600x300-e1558142227486.png 600w, https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2019\/03\/ios-software-update-available-icon-600x300-e1558142227486-150x75.png 150w, https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2019\/03\/ios-software-update-available-icon-600x300-e1558142227486-300x150.png 300w\" sizes=\"(max-width: 600px) 100vw, 600px\" \/><\/p>\n<p>Apple has released a series of security updates to patch two critical vulnerabilities that the company says were &#8220;actively exploited&#8221; in the wild.<\/p>\n<p>The following updates were released on Monday, September 13, 2021:<\/p>\n<ul>\n<li>iOS 14.8<\/li>\n<li>iPadOS 14.8<\/li>\n<li>macOS Big Sur 11.6<\/li>\n<li>Security Update 2021-005 Catalina<\/li>\n<li>Safari 14.1.2 (build 14611.3.10.1.7 for Mojave and 15611.3.10.1.7 for Catalina)<\/li>\n<\/ul>\n<p>Each of these updates patches one or both of the following issues:<\/p>\n<blockquote><p><strong>Component:<\/strong> CoreGraphics<\/p>\n<p><strong>Impact:<\/strong> Processing a maliciously crafted PDF may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited.<\/p>\n<p><strong>Description:<\/strong> An integer overflow was addressed with improved input validation.<\/p>\n<p><strong>Vulnerability ID:<\/strong> CVE-2021-30860, reported by The Citizen Lab<\/p><\/blockquote>\n<blockquote><p><strong>Component:<\/strong> WebKit<\/p>\n<p><strong>Impact:<\/strong> Processing maliciously crafted web content may lead to arbitrary code execution. Apple is aware of a report that this issue may have been actively exploited.<\/p>\n<p><strong>Description:<\/strong> A use after free issue was addressed with improved memory management.<\/p>\n<p><strong>Vulnerability ID:<\/strong> CVE-2021-30858, reported by an anonymous researcher<\/p><\/blockquote>\n<p>Every one of Apple&#8217;s operating systems received both updates, with two exceptions:<\/p>\n<ul>\n<li>CVE-2021-30860 was evidently not patched for macOS Mojave<\/li>\n<li>CVE-2021-30858 was evidently not patched in watchOS 7.6.2<\/li>\n<\/ul>\n<p>It is unclear whether those vulnerabilities were simply not exploitable on those operating systems, or if there was some other reason why they were not patched. We have reached out to Apple for clarification and will update this article if Apple responds.<\/p>\n<p>The bug that wasn&#8217;t patched for Mojave is <a href=\"https:\/\/www.washingtonpost.com\/technology\/2021\/09\/13\/pegasus-spyware-new-exploit-apple\/\" target=\"_blank\" rel=\"noopener\">reportedly<\/a> one that was exploited by <a href=\"https:\/\/www.intego.com\/mac-security-blog\/topic\/pegasus\/\">Pegasus spyware<\/a> on iOS, as we <a href=\"https:\/\/www.intego.com\/mac-security-blog\/pegasus-spyware-hacks-iphones-of-prominent-individuals\/\">reported on back in July<\/a>:<\/p>\n<blockquote class=\"wp-embedded-content\" data-secret=\"Ye4cM2DjbK\"><p><a href=\"https:\/\/www.intego.com\/mac-security-blog\/pegasus-spyware-hacks-iphones-of-prominent-individuals\/\">Pegasus Spyware Hacks iPhones of Prominent Individuals<\/a><\/p><\/blockquote>\n<p><iframe class=\"wp-embedded-content\" sandbox=\"allow-scripts\" security=\"restricted\" style=\"position: absolute; clip: rect(1px, 1px, 1px, 1px);\" title=\"&#8220;Pegasus Spyware Hacks iPhones of Prominent Individuals&#8221; &#8212; The Mac Security Blog\" src=\"https:\/\/www.intego.com\/mac-security-blog\/pegasus-spyware-hacks-iphones-of-prominent-individuals\/embed\/#?secret=Ye4cM2DjbK\" data-secret=\"Ye4cM2DjbK\" width=\"500\" height=\"282\" frameborder=\"0\" marginwidth=\"0\" marginheight=\"0\" scrolling=\"no\"><\/iframe><\/p>\n<p>Apple&#8217;s next versions of its flagship operating systems\u2014iOS 15, iPadOS 15, and macOS Monterey\u2014are due this fall.<\/p>\n<p>Apple quietly announced the iOS 15 and iPadOS 15 release date, Monday, September 20, shortly after its <a href=\"https:\/\/www.intego.com\/mac-security-blog\/apple-introduces-the-iphone-13-apple-watch-series-7-and-new-ipads\/\" rel=\"noopener\">September 14th &#8220;California Streaming&#8221; Apple Event<\/a> which we covered here on The Mac Security Blog. However, Apple has not yet announced precisely when macOS Monterey will be released.<\/p>\n<h3>Are older versions of macOS protected? What about iOS?<\/h3>\n<p>Apple typically only releases security updates for the current and two previous versions of the Mac operating system. This means that macOS Big Sur (aka macOS 11), macOS Catalina (macOS 10.15), and macOS Mojave (macOS 10.14) are currently supported. All older versions are no longer receiving any security updates whatsoever.<\/p>\n<p>For optimal security and privacy, it&#8217;s best to stay on the latest version of macOS that your Mac supports, and use trusted protection tools\u2014like <a href=\"https:\/\/www.intego.com\/mac-protection-bundle\">Intego&#8217;s Mac Premium Bundle X9<\/a>\u2014to keep your Mac as safe as possible from viruses and cyber threats.<\/p>\n<p>As for iOS (and iPadOS), Apple currently releases security updates for the current version, with occasional updates for a previous version. For now, this means that iOS 14 and iPadOS 14 get all security updates, and iOS 12 (the last version that will run on older mobile devices) occasionally gets updates to resolve some\u2014but not all\u2014vulnerabilities.<\/p>\n<p>After iOS 15 and iPadOS 15 are released next Monday, Apple has pre-committed to continue releasing updates for iOS 14 and iPadOS 14.\u00a0 This marks a departure from Apple&#8217;s past practices, especially since versions 14 and 15 support the same hardware. However, it remains to be seen whether there will be a similar relationship as currently exists between 14 and 12 (where the older version doesn&#8217;t receive patches for every security flaw). It also remains to be seen whether Apple will continue to release occasional iOS 12 updates to offer continued support for older hardware that cannot run the latest iOS or iPadOS.<\/p>\n<h3>How can I learn more?<\/h3>\n<p><a href=\"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2021\/04\/intego-podcast-artwork-400.jpg\" target=\"_blank\" rel=\"noopener noreferrer\"><img class=\"alignleft\" src=\"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2021\/04\/intego-podcast-artwork-400.jpg\" alt=\"\" width=\"70\" \/><\/a>Each week on the <a href=\"https:\/\/podcast.intego.com\/\" target=\"_blank\" rel=\"noopener\"><strong>Intego Mac Podcast<\/strong><\/a>, Intego&#8217;s Mac security experts discuss the latest Apple news, security and privacy stories, and offer practical advice on getting the most out of your Apple devices. Be sure to <a href=\"https:\/\/podcasts.apple.com\/us\/podcast\/intego-mac-podcast\/id1293834627\" rel=\"noopener\"><strong>follow the podcast<\/strong><\/a> to make sure you don\u2019t miss any episodes. We&#8217;ll cover the latest Apple Event there as well.<\/p>\n<p>Be sure to\u00a0subscribe to our <strong>e-mail newsletter<\/strong> and keep an eye here on <strong>The Mac Security Blog<\/strong> to stay up to date on the most important Apple, security, and privacy news. Follow Intego on your favorite social media channels to ensure you never miss an update: <a href=\"https:\/\/twitter.com\/IntegoSecurity\" target=\"_blank\" rel=\"noopener noreferrer\">Twitter<\/a>, <a href=\"https:\/\/www.facebook.com\/Intego\" target=\"_blank\" rel=\"noopener noreferrer\">Facebook<\/a>, <a href=\"https:\/\/www.linkedin.com\/company\/intego\" target=\"_blank\" rel=\"noopener\">LinkedIn<\/a>, <a href=\"https:\/\/www.instagram.com\/intego_security\/\" target=\"_blank\" rel=\"noopener noreferrer\">Instagram<\/a>, and <a href=\"https:\/\/www.youtube.com\/user\/IntegoVideo?sub_confirmation=1\" target=\"_blank\" rel=\"noopener noreferrer\">YouTube<\/a>.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Apple has released a series of security updates to patch two critical vulnerabilities that the company says were &#8220;actively exploited&#8221; in the wild. The following updates were released on Monday, September 13, 2021: iOS 14.8 iPadOS 14.8 macOS Big Sur 11.6 Security Update 2021-005 Catalina Safari 14.1.2 (build 14611.3.10.1.7 for Mojave and 15611.3.10.1.7 for Catalina) [&hellip;]<\/p>\n","protected":false},"author":14,"featured_media":85426,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"spay_email":"","jetpack_publicize_message":"","jetpack_is_tweetstorm":false},"categories":[7,5],"tags":[3070,319],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v17.4 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<meta name=\"description\" content=\"Apple has released a series of security updates to patch two critical vulnerabilities that the company says were &quot;actively exploited&quot; in the wild. The\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Apple patches two in-the-wild vulnerabilities for macOS, iOS, iPadOS, watchOS - The Mac Security Blog\" \/>\n<meta property=\"og:description\" content=\"Apple has released a series of security updates to patch two critical vulnerabilities that the company says were &quot;actively exploited&quot; in the wild. The\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/\" \/>\n<meta property=\"og:site_name\" content=\"The Mac Security Blog\" \/>\n<meta property=\"article:author\" content=\"https:\/\/www.facebook.com\/JoshLong\" \/>\n<meta property=\"article:published_time\" content=\"2021-09-14T06:50:34+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2021-09-15T20:30:03+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2019\/01\/ios-software-update-available-icon-400x260.png\" \/>\n\t<meta property=\"og:image:width\" content=\"400\" \/>\n\t<meta property=\"og:image:height\" content=\"260\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@theJoshMeister\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Joshua Long\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Organization\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#organization\",\"name\":\"Intego\",\"url\":\"https:\/\/www.intego.com\/mac-security-blog\/\",\"sameAs\":[],\"logo\":{\"@type\":\"ImageObject\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#logo\",\"inLanguage\":\"en-US\",\"url\":\"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2022\/10\/intego-organization-logo-for-google-knowledge-graph-875x875-1.png\",\"contentUrl\":\"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2022\/10\/intego-organization-logo-for-google-knowledge-graph-875x875-1.png\",\"width\":875,\"height\":875,\"caption\":\"Intego\"},\"image\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#logo\"}},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#website\",\"url\":\"https:\/\/www.intego.com\/mac-security-blog\/\",\"name\":\"The Mac Security Blog\",\"description\":\"Keep Macs safe from the dangers of the Internet\",\"publisher\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.intego.com\/mac-security-blog\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"ImageObject\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/#primaryimage\",\"inLanguage\":\"en-US\",\"url\":\"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2019\/01\/ios-software-update-available-icon-400x260.png\",\"contentUrl\":\"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2019\/01\/ios-software-update-available-icon-400x260.png\",\"width\":400,\"height\":260,\"caption\":\"iOS software update available icon\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/#webpage\",\"url\":\"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/\",\"name\":\"Apple patches two in-the-wild vulnerabilities for macOS, iOS, iPadOS, watchOS - The Mac Security Blog\",\"isPartOf\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/#primaryimage\"},\"datePublished\":\"2021-09-14T06:50:34+00:00\",\"dateModified\":\"2021-09-15T20:30:03+00:00\",\"description\":\"Apple has released a series of security updates to patch two critical vulnerabilities that the company says were \\\"actively exploited\\\" in the wild. The\",\"breadcrumb\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/www.intego.com\/mac-security-blog\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Apple patches two in-the-wild vulnerabilities for macOS, iOS, iPadOS, watchOS\"}]},{\"@type\":\"Article\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/#webpage\"},\"author\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#\/schema\/person\/dcf592275ba6edde8d20f1e60029c6b1\"},\"headline\":\"Apple patches two in-the-wild vulnerabilities for macOS, iOS, iPadOS, watchOS\",\"datePublished\":\"2021-09-14T06:50:34+00:00\",\"dateModified\":\"2021-09-15T20:30:03+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/#webpage\"},\"wordCount\":689,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#organization\"},\"image\":{\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2019\/01\/ios-software-update-available-icon-400x260.png\",\"keywords\":[\"Pegasus\",\"Security\"],\"articleSection\":[\"Apple\",\"Security News\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/#respond\"]}]},{\"@type\":\"Person\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#\/schema\/person\/dcf592275ba6edde8d20f1e60029c6b1\",\"name\":\"Joshua Long\",\"image\":{\"@type\":\"ImageObject\",\"@id\":\"https:\/\/www.intego.com\/mac-security-blog\/#personlogo\",\"inLanguage\":\"en-US\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/5ad29f4111ce14911abaa98cbbcdea42?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/5ad29f4111ce14911abaa98cbbcdea42?s=96&d=mm&r=g\",\"caption\":\"Joshua Long\"},\"description\":\"Joshua Long (@theJoshMeister), formerly Intego\\u2019s Chief Security Analyst, is a renowned security researcher and writer, and an award-winning public speaker. Josh has a master\\u2019s degree in IT concentrating in Internet Security and has taken doctorate-level coursework in Information Security. Apple has publicly acknowledged Josh for discovering an Apple\\u00a0ID authentication vulnerability. Josh has conducted cybersecurity research for well over 25 years, which is often featured by major news outlets worldwide. Keep up with Josh via X\/Twitter, LinkedIn, Facebook, Instagram, YouTube, Patreon, Mastodon, the JoshMeister on Security, and more. \\u2014\",\"sameAs\":[\"https:\/\/security.thejoshmeister.com\",\"https:\/\/www.facebook.com\/JoshLong\",\"https:\/\/www.instagram.com\/thejoshmeister\/\",\"https:\/\/www.linkedin.com\/in\/thejoshmeister\",\"https:\/\/www.pinterest.com\/thejoshmeister\/\",\"https:\/\/twitter.com\/theJoshMeister\",\"https:\/\/www.youtube.com\/@theJoshMeister\"],\"url\":\"https:\/\/www.intego.com\/mac-security-blog\/author\/joshlong\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"description":"Apple has released a series of security updates to patch two critical vulnerabilities that the company says were \"actively exploited\" in the wild. The","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/","og_locale":"en_US","og_type":"article","og_title":"Apple patches two in-the-wild vulnerabilities for macOS, iOS, iPadOS, watchOS - The Mac Security Blog","og_description":"Apple has released a series of security updates to patch two critical vulnerabilities that the company says were \"actively exploited\" in the wild. The","og_url":"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/","og_site_name":"The Mac Security Blog","article_author":"https:\/\/www.facebook.com\/JoshLong","article_published_time":"2021-09-14T06:50:34+00:00","article_modified_time":"2021-09-15T20:30:03+00:00","og_image":[{"width":400,"height":260,"url":"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2019\/01\/ios-software-update-available-icon-400x260.png","type":"image\/png"}],"twitter_card":"summary_large_image","twitter_creator":"@theJoshMeister","twitter_misc":{"Written by":"Joshua Long","Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Organization","@id":"https:\/\/www.intego.com\/mac-security-blog\/#organization","name":"Intego","url":"https:\/\/www.intego.com\/mac-security-blog\/","sameAs":[],"logo":{"@type":"ImageObject","@id":"https:\/\/www.intego.com\/mac-security-blog\/#logo","inLanguage":"en-US","url":"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2022\/10\/intego-organization-logo-for-google-knowledge-graph-875x875-1.png","contentUrl":"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2022\/10\/intego-organization-logo-for-google-knowledge-graph-875x875-1.png","width":875,"height":875,"caption":"Intego"},"image":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/#logo"}},{"@type":"WebSite","@id":"https:\/\/www.intego.com\/mac-security-blog\/#website","url":"https:\/\/www.intego.com\/mac-security-blog\/","name":"The Mac Security Blog","description":"Keep Macs safe from the dangers of the Internet","publisher":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.intego.com\/mac-security-blog\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"ImageObject","@id":"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/#primaryimage","inLanguage":"en-US","url":"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2019\/01\/ios-software-update-available-icon-400x260.png","contentUrl":"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2019\/01\/ios-software-update-available-icon-400x260.png","width":400,"height":260,"caption":"iOS software update available icon"},{"@type":"WebPage","@id":"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/#webpage","url":"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/","name":"Apple patches two in-the-wild vulnerabilities for macOS, iOS, iPadOS, watchOS - The Mac Security Blog","isPartOf":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/#primaryimage"},"datePublished":"2021-09-14T06:50:34+00:00","dateModified":"2021-09-15T20:30:03+00:00","description":"Apple has released a series of security updates to patch two critical vulnerabilities that the company says were \"actively exploited\" in the wild. The","breadcrumb":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.intego.com\/mac-security-blog\/"},{"@type":"ListItem","position":2,"name":"Apple patches two in-the-wild vulnerabilities for macOS, iOS, iPadOS, watchOS"}]},{"@type":"Article","@id":"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/#article","isPartOf":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/#webpage"},"author":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/#\/schema\/person\/dcf592275ba6edde8d20f1e60029c6b1"},"headline":"Apple patches two in-the-wild vulnerabilities for macOS, iOS, iPadOS, watchOS","datePublished":"2021-09-14T06:50:34+00:00","dateModified":"2021-09-15T20:30:03+00:00","mainEntityOfPage":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/#webpage"},"wordCount":689,"commentCount":0,"publisher":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/#organization"},"image":{"@id":"https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/#primaryimage"},"thumbnailUrl":"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2019\/01\/ios-software-update-available-icon-400x260.png","keywords":["Pegasus","Security"],"articleSection":["Apple","Security News"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.intego.com\/mac-security-blog\/apple-patches-two-in-the-wild-vulnerabilities-for-macos-ios-ipados-watchos\/#respond"]}]},{"@type":"Person","@id":"https:\/\/www.intego.com\/mac-security-blog\/#\/schema\/person\/dcf592275ba6edde8d20f1e60029c6b1","name":"Joshua Long","image":{"@type":"ImageObject","@id":"https:\/\/www.intego.com\/mac-security-blog\/#personlogo","inLanguage":"en-US","url":"https:\/\/secure.gravatar.com\/avatar\/5ad29f4111ce14911abaa98cbbcdea42?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/5ad29f4111ce14911abaa98cbbcdea42?s=96&d=mm&r=g","caption":"Joshua Long"},"description":"Joshua Long (@theJoshMeister), formerly Intego\u2019s Chief Security Analyst, is a renowned security researcher and writer, and an award-winning public speaker. Josh has a master\u2019s degree in IT concentrating in Internet Security and has taken doctorate-level coursework in Information Security. Apple has publicly acknowledged Josh for discovering an Apple\u00a0ID authentication vulnerability. Josh has conducted cybersecurity research for well over 25 years, which is often featured by major news outlets worldwide. Keep up with Josh via X\/Twitter, LinkedIn, Facebook, Instagram, YouTube, Patreon, Mastodon, the JoshMeister on Security, and more. \u2014","sameAs":["https:\/\/security.thejoshmeister.com","https:\/\/www.facebook.com\/JoshLong","https:\/\/www.instagram.com\/thejoshmeister\/","https:\/\/www.linkedin.com\/in\/thejoshmeister","https:\/\/www.pinterest.com\/thejoshmeister\/","https:\/\/twitter.com\/theJoshMeister","https:\/\/www.youtube.com\/@theJoshMeister"],"url":"https:\/\/www.intego.com\/mac-security-blog\/author\/joshlong\/"}]}},"jetpack_featured_media_url":"https:\/\/www.intego.com\/mac-security-blog\/wp-content\/uploads\/2019\/01\/ios-software-update-available-icon-400x260.png","jetpack_publicize_connections":[],"jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/p4VAYd-oyr","amp_enabled":true,"_links":{"self":[{"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/posts\/94391"}],"collection":[{"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/users\/14"}],"replies":[{"embeddable":true,"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/comments?post=94391"}],"version-history":[{"count":14,"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/posts\/94391\/revisions"}],"predecessor-version":[{"id":94422,"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/posts\/94391\/revisions\/94422"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/media\/85426"}],"wp:attachment":[{"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/media?parent=94391"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/categories?post=94391"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/origin.intego.com\/mac-security-blog\/wp-json\/wp\/v2\/tags?post=94391"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}