Using Chrome, Windows, iOS and Zoom? Update them now or else risk security breach


October received a lineup of software and security updates for Android, iOS, Windows, Chrome and Zoom. The new patches and fixes addressed important security vulnerabilities, bugs and enhanced security features. Generally, these updates are automatically downloaded in the devices if the device is set up on auto download. But in case the auto download is off, it is highly advisable to update the software with the latest patches to keep your device safe.

Here is the list of latest patches rolled out by Apple, Google, Microsoft and Zoom which your device needs to update as soon as possible.


Apple iOS 16.1 and iPadOS 16 update
Apple released the latest iOS 16.1 and iPadOS 16 just after the release of the latest iPad lineup. Both iOS 16.1 and iPadOS 16 have a list of security fixes including a zero-day vulnerability. According to Apple 's support page, the exploited flaw is classified as CVE-2022-42827 and could allow an application to run code with kernel privileges.

The operating system update addresses a total of 20 vulnerabilities, three of which are in the kernel, the core component of the iPhone's operating system. Along with that, the iOS 16.1 also fixes four flaws in WebKit, the engine that drives the Safari browser, of which two might be used to execute code.


Google Android new update fixes flaws in STuesday

Google released the Android Security Bulletin for October with patches for 33 kernel and vendor-related flaws as well as 15 Framework and System faults. One of the most alarming vulnerabilities is a serious security issue in the Framework component that could result in local network access and is designated CVE-2022-20419. This update is now available for the Samsung Galaxy S21, S22, and Galaxy S21 FE and Pixel devices.


Google releases emergency update for Chrome

Google released another emergency update for Google Chrome users to address a type of confusion vulnerability in the V8 JavaScript engine. Classified as CVE-2022-3723, the flaw could be used to run programmes and take over the system controls. Google also released Chrome 106 earlier this month, fixing six high-severity vulnerabilities.


Microsoft released Patch meetings

Microsoft also released its security fixes for the Windows operating system (OS) targeting 84 flaws. 13 of the listed laws are rated critical. The Windows COM+ Event System Service is LAO vulnerable to one of the elevations of privilege flaws, tracked as CVE-2022-41033. The vulnerability is critical and affects almost all versions of Windows. If exploited, it could be combined with other bugs to hack into someone's computer.

Zoom resolves high security issues in Zoom client for meetings

The October patches released by Zoom include a flaw in its Zoom client for meetings. Addressed as CVE-2022-28763, the security issue is marked in high severity with a CVSS Score of 8.8. Describe the malware, Zoom cited in its security bulletin that "If a malicious Zoom meeting URL is opened, the link may direct the user to connect to an arbitrary network address, leading to additional attacks including session takeovers. "Users using Zoom version 5.12.2 are advised to update the software to avoid security breach.

No comments:

Post a Comment

Welcome To My Blog.