• Government Warns Apple Watch Users in India of Multiple High Severity Vulnerabilities

    Sci & Tech
    Government Warns Apple Watch Users in India of Multiple High Severity Vulnerabilities
    According to CERT-in, the Apple Watch has vulnerabilities related to buffer overrun in the AppleAVD component and an authorization problem in the AppleMobileFileIntegrity component.

    Digital Desk: It looks like Apple Watch models running OS versions older than 8.7 contain a number of security flaws. The Indian government has issued a warning to customers, stating that these flaws could allow hackers to get around security measures on any Apple Watch device. Customers who own Apple Watches have received a high-severity warning from the Indian Computer Emergency Response Team (CERT-in).

    According to the cited source, the Apple Watch's flaws might allow an attacker access to any targeted system's security measures and allow them to run arbitrary code. According to CERT-in, the Apple Watch has vulnerabilities related to buffer overrun in the AppleAVD component and an authorization problem in the AppleMobileFileIntegrity component.

    Additional justifications offered by CERT-in seem to support the existence of these vulnerabilities in the Apple Watch. Out-of-bounds reading in the kernel component, memory corruption in the GPU Drivers component, type confusion in the Multi-Touch component, multiple out-of-bounds writing, and memory corruption in the WebKit, Audio, and ICU components, as well as memory initialization in the libxml2 component, are a few of these.

    CERT-in stated that a hacker can quickly take advantage of these flaws by sending a carefully prepared request. If they were to successfully exploit these flaws, it would be simpler for the hacker to run arbitrary code and get around security measures.

    If you are an Apple Watch user, then you don’t have to worry because the company has already provided security updates. Users are therefore urged to update to the most recent Apple WatchOS 8.7 version, which resolves all the issues on their smartwatches. Apple has highlighted the same problems and acknowledged the vulnerability on its help page.