Apple Patches Two Actively Exploited iOS Flaws Used in Sophisticated Targeted Attacks
Briefly

Apple has issued security updates for its operating systems, including iOS, iPadOS, and macOS, to fix two critical vulnerabilities that are being actively exploited, namely CVE-2025-31200 and CVE-2025-31201. The first involves memory corruption in Core Audio, potentially allowing code execution, while the second relates to a vulnerability in the RPAC component enabling bypass of Pointer Authentication. Apple has recognized sophisticated attacks targeting specific individuals, necessitating these updates. This year, Apple has tackled five actively exploited zero-day vulnerabilities, showcasing its commitment to software security.
This update addresses two critical vulnerabilities that have been actively exploited, highlighting the ongoing challenges of maintaining security in widely used operating systems.
Apple reported that these vulnerabilities were exploited in sophisticated attacks targeting specific individuals, emphasizing the need for prompt security updates.
The recent updates also mark Apple's efforts in addressing five actively exploited zero-days in its software in the current year alone.
CVE-2025-31200 and CVE-2025-31201 vulnerabilities underscored the importance of boundaries in programming to prevent potential security breaches.
Read at The Hacker News
[
|
]