High Threat Security Alert (A21-09-09): Multiple Vulnerabilities in Apple iOS and iPadOS
14 September 2021
Last update on:
23 September 2021
Apple has released iOS 14.8 and iPadOS 14.8 to fix the vulnerabilities in various Apple devices. The list of vulnerability information can be found at:
Reports indicate that the vulnerabilities (CVE-2021-30858 and CVE-2021-30860) are being exploited in the wild. You are advised to take immediate action to patch your affected systems to mitigate the elevated risk of cyber attacks.
On 23.09.2021: Apple has released additional vulnerability information for iOS and iPadOS prior to version 14.8. Additional impacts including denial of service, information disclosure and security restriction bypass are added. System administrators are advised to take immediate actions to patch your affected systems to mitigate the elevated risk of cyber attacks.
iPhone 6s and later
iPad 5th generation and later, Air 2 and later, mini 4 and later, Pro (all models)
iPod touch (7th generation)
A successful exploitation could lead to arbitrary code execution on an affected device.
Apple has released new version of iOS and iPadOS to address the issue.
The updates can be obtained through the auto-update mechanism. Users of affected systems should follow the recommendations provided by the product vendor and take immediate actions to mitigate the risk.