Apple has recently launched iOS 16.7.1 in order to address significant security vulnerabilities.
Macworld
Apple released the iOS 16.7.1 update for the iPhone 8, iPhone X, and other models that have not yet been updated to iOS 17 on Tuesday. This update, similar to iOS 17.0.3 released last week, includes “significant security improvements and is highly recommended for all users.” Additionally, those using iPads with iOS 16 will also receive an update.
The latest version includes two important security patches, with one potentially being targeted by malicious attacks. These same updates were also included in the previous iOS 17.0.3 release.
Kernel
-
Possible consequences: A person with access to the device may be able to gain higher levels of control. Apple has been made aware of a report indicating that this problem may have been actively used on iOS versions older than iOS 16.6.
-
The problem was resolved by implementing better checks.
- CVE-2023-42824
WebRTC
- Impact: A buffer overflow may result in arbitrary code execution
-
The problem was resolved by upgrading to libvpx version 1.13.1.
- WebKit Bugzilla: 262365
CVE-2023-5217
After the launch of iOS 17 in September, Apple has ceased the development of iOS 16. However, they will continue to provide security updates for a minimum of 12 months. To update your iPhone, go to the Settings app, select General, then choose Software Update. Once iOS 16.7.1 is available, click on Download & Install and follow the instructions.