Apple Patches Zero-Day Flaw Impacting Safari, iOS, macOS, watchOS

Apple Patches Actively Exploited Browser Vulnerability Affecting Safari, Chrome, and Multiple Devices

  • Apple released security updates across all major devices following a serious web browser vulnerability.
  • The flaw, CVE-2025-6558, was actively exploited and could allow attackers to escape browser Sandbox protections.
  • Google security researchers discovered and reported the vulnerability, which also affects Chrome.
  • The vulnerability stems from improper input validation in browser graphics components (ANGLE and GPU).
  • Users are urged to update devices to patched versions for full protection, although no active Apple-targeted attacks have been reported.

Apple issued security updates on Tuesday, July 30, 2025, to address a high-risk vulnerability that affects its software portfolio. The flaw, identified as CVE-2025-6558, was already exploited as a zero-day attack in the Chrome web browser earlier in July, prompting immediate attention.

- Advertisement -

According to an official advisory, the vulnerability has a CVSS score of 8.8 out of 10, making it a significant security risk. The bug results from the incorrect validation of untrusted input in two browser graphics components, ANGLE and GPU. This could let an attacker escape the browser sandbox—a protective barrier—by using a specially crafted HTML page. Google confirmed that “an exploit for CVE-2025-6558 exists in the wild,” crediting Clément Lecigne and Vlad Stolyarov from its Threat Analysis Group for finding and disclosing the issue.

Apple stated the weakness impacts the WebKit engine, which powers the Safari browser. The company explained that “this is a vulnerability in open-source code and Apple Software is among the affected projects,” and further noted the flaw could cause Safari to crash unexpectedly when handling malicious websites. The company patched this bug in several major releases, including iOS 18.6 and iPadOS 18.6, iPadOS 17.7.9, macOS Sequoia 15.6, tvOS 18.6, watchOS 11.6, and visionOS 2.6.

The updates cover a wide range of hardware, including iPhones starting from the XS model, various iPad generations, Macs, Apple TV, Apple Watch Series 6 and later, and the Vision Pro headset.

So far, there is no evidence that attackers have used this vulnerability to specifically target Apple device owners. Still, security experts recommend updating devices to the latest software versions to maintain optimal protection.

- Advertisement -

✅ Follow BITNEWSBOT on Telegram, Facebook, LinkedIn, X.com, and Google News for instant updates.

Previous Articles:

- Advertisement -

Latest News

Copper Surges to Record High, Bank of America Predicts $11,000 Target

Copper prices have reached a record high, rising nearly 20% year-to-date. Bank of America forecasts...

Shopify, Etsy Stocks Surge on OpenAI Deal Despite Analyst Caution

Shopify and Etsy shares rose 6.2% and 15.8% after announcing an e-commerce partnership with...

Solana ETF Approval Seen as Imminent After S-1 Amendment Filing

The U.S. Securities and Exchange Commission (SEC) has made the 19b-4 review timeline irrelevant...

Wisconsin Bill Proposes Crypto Mining, Staking License Exemptions

Wisconsin lawmakers propose a bill to exempt individuals and businesses from money transmitter licenses...

Dormant Bitcoin Whale Moves $44M After 12 Years, Spooking Market

An inactive Bitcoin wallet holding 400 BTC, valued at over $44 million, moved funds...
- Advertisement -

Must Read

What Is Binance Earn?

As someone who is passionate about cryptocurrency, I am always on the lookout for new opportunities to grow my portfolio. That's why I was...