UPDATED 20:59 EST / MARCH 31 2022

SECURITY

Apple update addresses battery-draining and security issues

Apple Inc. today released software updates for its products that address security issues and a battery-draining issue on iPhones and iPads.

Both iOS 15.4.1 and iPadOS 15.41.1 address a security issue in iPhones and various iPads. The vulnerability resides in AppleAVD, Apple’s audio and video decoding framework, and is described by Apple as an application may be able to execute arbitrary code with kernel privileges. An out-of-bounds write issue was addressed in the update with improved bounds checking.

Devices affected are iPhone 6s and later, iPad Pro (all models), iPad Air 2 and later, iPad 5th generation and later, iPad mini 4 and later and iPod touch (7th generation).

With macOS Monterey 12.3.1, the update addressed two issues. The first is the same issue that iOS and iPadOS had with AppleAVD: An application may be able to execute arbitrary code with kernel privileges. The fix was also the same: An out-of-bounds write issue was addressed with improved bounds checking.

The second issue addressed in the macOS update resided in the Intel Graphic Driver. In this case, an application may be able to read kernel memory. An out-of-bounds read issue that may lead to the disclosure of kernel memory was addressed with improved input validation.

The macOS vulnerabilities differ from those in iOS and iPadOS in that Apple notes it’s aware of a report that the macOS issues may have been actively exploited. Apple did not provide any details regarding the attacks.

The iOS and iPadOS updates also addressed a battery-draining issue that users reported after they updated to iOS 15.4. How widespread the problem was is not clear.

According to the release notes, the update addresses an issue described as the battery potentially draining more quickly than expected after updating to iOS 15.4. Other bug fixes include an issue where Braille devices may become unresponsive while navigating text or displaying an alert, and Made for iPhone hearing devices may lose connection with some third-party apps.

Apple also released security and bug updates for its other devices — watchOS 8.5.1, tvOS 15.4.1 and HomePod 15.4.1 — that address similar issues.

Image: Apple

A message from John Furrier, co-founder of SiliconANGLE:

Your vote of support is important to us and it helps us keep the content FREE.

One click below supports our mission to provide free, deep, and relevant content.  

Join our community on YouTube

Join the community that includes more than 15,000 #CubeAlumni experts, including Amazon.com CEO Andy Jassy, Dell Technologies founder and CEO Michael Dell, Intel CEO Pat Gelsinger, and many more luminaries and experts.

“TheCUBE is an important partner to the industry. You guys really are a part of our events and we really appreciate you coming and I know people appreciate the content you create as well” – Andy Jassy

THANK YOU