According to details shared by a security firm, iOS 16.5.1 is being released to users of supported iPhone models, bringing significant fixes for zero-day security flaws that could allow an attacker to hack an iPhone via iMessage. But can allow spyware to be infected and installed. The latest update also resolves a bug introduced with a previous update that prevented charging with Apple’s Lightning to USB 3 camera adapter accessory. The company has also released updates for iPadOS 16.5.1, macOS 13.4.1, and watchOS 9.5.2 with security and bug fixes.
Apple has fixed zero-day (previously unknown) vulnerabilities on iOS 15.7.77 and iOS 16.5.1 that are related to the operating system’s kernel and the WebKit engine that powers its Safari browser. According to details shared by security firm Kaspersky, the kernel security flaw would allow attackers to install “triangulation” spyware on the iPhone. Apple has credited Kaspersky’s Georgy Kucherin, Leonid Bezvarchenko and Boris Larin, as well as an unnamed researcher, for discovering the vulnerabilities.
The security firm explains that an attacker could send an iMessage with a malicious attachment to infect an iPhone that would remain in the device’s RAM. If the device was rebooted or 30 days had passed, the spyware would be removed from memory. According to Kaspersky, to re-infect the device, an attacker would have to send another maliciously crafted attachment via iMessage. The company first informed about the security flaw earlier this month.
According to Apple, these security vulnerabilities have been fixed on iPhone and iPad with iOS 16.5.1, iOS 15.7.7, iPadOS 16.5.1, or iPadOS 15.7.7. In the meantime, Mac owners can update to macOS 13.4.1, macOS 12.6.7 or macOS 11.7.8 to stay safe from the security flaw, while Apple Watch users will need to install the watchOS 9.5.2 or watchOS 8.8.1 update .
Meanwhile, the iOS 16.5.1 update also comes with fixes for bugs introduced with the iOS 16.5 update released last month. Updating to iOS 16.5.1 should restore the charging functionality of the Lightning to USB 3 Camera Adapter, which was accidentally removed with a previous update. Users can go to the Settings app on their iPhone and tap General , software update , Download and Install To download and install the latest software updates.