Live data from Hacker News

About the security content of iOS 12.4.9

support.apple.com

11–20 of 177 posts

Re: About the security content of iOS 12.4.9

#11
post #2

A tricky thing about flagging "in the wild exploited vulnerabilities" in a title like this is that it suggests that sev:crit vulnerabilities in other updates that aren't flagged like this aren't being exploited in the wild. We get confirmation of only a subset of exploited vulnerabilities. We'd be better off with a more neutral title, like "fixing severe vulnerabilities" or something like that.

We've changed the title above to that of the page. (Submitted title was "Apple releases iOS 14.2 and 12.4.9, fixing in-the-wild exploited vulnerabilities".)

Re: About the security content of iOS 12.4.9

#12

I'd like to give kudos to Apple for including the iPhone 5S in this security update, which was released on September 20, 2013, over 7 years ago! Supporting a product for even 3 years is rare in the smartphone world.

This is why Apple makes the cheapest smartphones, as long as you avoid dropping them.

Re: About the security content of iOS 12.4.9

#14
post #6
post #4

Maybe I got hit with one of these, my phone stopped being able to answer phone calls and auto focus stopped working (like something re flashed the firmware on a bunch of the internal peripherals.) I was going to wait until the software on my pinephone was more mature but that pushed me over the edge to get power management working on my own and make sure it could make phone calls. I think dumping iOS has done a lot f…

Per PZ, the attacks here are targeted, meaning that the people exploiting them spent a fair bit of money to get these exploits, and are presumably very unhappy that they are burned. Unless you are special, it's unlikely that you got hit with one of these.

[deleted]

Re: About the security content of iOS 12.4.9

#15
post #13

I'd like to give kudos to Apple for including the iPhone 5S in this security update, which was released on September 20, 2013, over 7 years ago! Supporting a product for even 3 years is rare in the smartphone world.

The 5S is still the perfect iPhone.

If the 5S is perfect, what's the iPhone SE (2016)?

Re: About the security content of iOS 12.4.9

#16
post #13

I'd like to give kudos to Apple for including the iPhone 5S in this security update, which was released on September 20, 2013, over 7 years ago! Supporting a product for even 3 years is rare in the smartphone world.

The 5S is still the perfect iPhone.

How do you still have one that's running OK? My Apple products almost always "die" after a few years. I had the 5S but one day it crashed and would not turn back on no matter what I did. The iPhone I had before that did the same thing.

Re: About the security content of iOS 12.4.9

#17

I think it's interesting how iOS exploits are cheaper[1] than Android exploits, because iOS exploits are so plentiful in comparison to Android exploits. [1] https://arstechnica.com/information-technology/2019/09/for-t...

Is that still the case?

The article implies that before it was written that wasn't the case previously.

Re: About the security content of iOS 12.4.9

#18

I'd like to give kudos to Apple for including the iPhone 5S in this security update, which was released on September 20, 2013, over 7 years ago! Supporting a product for even 3 years is rare in the smartphone world.

Also to Google for finding majority of them

Re: About the security content of iOS 12.4.9

#19

I think it's interesting how iOS exploits are cheaper[1] than Android exploits, because iOS exploits are so plentiful in comparison to Android exploits. [1] https://arstechnica.com/information-technology/2019/09/for-t...

What about the fact that android has 3 times the market share?

Re: About the security content of iOS 12.4.9

#20
Anybody get a bitter sweet feeling when ever these reported and fixed security exploits announcements happen?

It's good that users aren't going to risk getting hacked by such vulnerabilities, but its bad that users can no longer uses these exploits to gain administrative control over their property.

Post reply on HN