Welcome to ZisNews!

Read your favorite news, except the excluded topics, by you. Register
No overlapping ads for registered users

iOS 26.2 update: Here is what Apple fixed in its latest security patch and how to stay safe

Posted on: Dec 13, 2025 10:21 IST | Posted by: Livemint
iOS 26.2 update: Here is what Apple fixed in its latest security patch and how to stay safe

orchard apple tree has disclosed a wide-ranging go under of certificate vulnerabilities poignant recent iPhone and iPad models, warning that some of the flaws could grant access to sensitive data, device crashes, or in rare cases, full system compromise.

The details were published on Apple’s support page on Friday as part of its latest security update.

Devices affected

According to Apple, the issues affect iPhone 11 and newer models, along with several iPad lines. These include iPad Pro models from the 3rd generation onwards, iPad Air from the 3rd generation, iPad from the 8th generation, and iPad mini from the 5th generation.

App Store and privacy risks

One of the vulnerabilities relates to the App Store, where a permissions flaw could have allowed an app to access sensitive payment tokens. Apple said the issue has now been fixed by tightening restrictions.

Similar permission and logging issues were addressed across system components such as Icons, Messages, MediaExperience, Screen Time, Telephony and Photos. In some cases, apps could have accessed private user data, Safari history, or information about other installed apps.

Kernel and system-level flaws

Apple also fixed a serious issue in the kernel that could have allowed a malicious app to gain root privileges. The company said this was caused by an integer overflow problem, which has now been resolved by moving to 64-bit timestamps.

Other low-level components, including Foundation, Multi-Touch, libarchive and AppleJPEG, contained memory corruption bugs that could trigger app crashes or unexpected behaviour when processing malicious data or files.

FaceTime and calling concerns

Several fixes relate to FaceTime and the Calling Framework. These included issues where password fields could be exposed during remote device control sessions, and another flaw that could allow an attacker to spoof a FaceTime caller ID. Apple said improved state management resolved both problems.

WebKit vulnerabilities and targeted attacks

A large number of the disclosed issues affect WebKit, the browser engine used by Safari. Apple warned that maliciously crafted web content could cause crashes, memory corruption, or in the most serious cases, arbitrary code execution.

The company acknowledged reports that at least two WebKit vulnerabilities may have been exploited in “extremely sophisticated” targeted attacks against specific individuals on older versions of iOS, prior to iOS 26. These issues have now been patched.

Open source components

Some vulnerabilities originated in open source software used by Apple, including curl and libarchive. Apple noted that these issues were assigned CVE identifiers by third parties and that its software was among the affected projects.

Security update advised

Apple has not indicated that the majority of the vulnerabilities were exploited at scale, but it is urging users to update their devices to the latest software versions to ensure protection against the disclosed flaws.

Global News Perspectives

In today's interconnected world, staying informed about global events is more important than ever. ZisNews provides news coverage from multiple countries, allowing you to compare how different regions report on the same stories. This unique approach helps you gain a broader and more balanced understanding of international affairs. Whether it's politics, business, technology, or cultural trends, ZisNews ensures that you get a well-rounded perspective rather than a one-sided view. Expand your knowledge and see how global narratives unfold from different angles.

Customizable News Feed

At ZisNews, we understand that not every news story interests everyone. That's why we offer a customizable news feed, allowing you to control what you see. By adding keywords, you can filter out unwanted news, blocking articles that contain specific words in their titles or descriptions. This feature enables you to create a personalized experience where you only receive content that aligns with your interests. Register today to take full advantage of this functionality and enjoy a distraction-free news feed.

Like or Comment on News

Stay engaged with the news by interacting with stories that matter to you. Like or dislike articles based on your opinion, and share your thoughts in the comments section. Join discussions, see what others are saying, and be a part of an informed community that values meaningful conversations.

Download the Android App

For a seamless news experience, download the ZisNews Android app. Get instant notifications based on your selected categories and stay updated on breaking news. The app also allows you to block unwanted news, ensuring that you only receive content that aligns with your preferences. Stay connected anytime, anywhere.

Diverse News Categories

With ZisNews, you can explore a wide range of topics, ensuring that you never miss important developments. From Technology and Science to Sports, Politics, and Entertainment, we bring you the latest updates from the world's most trusted sources. Whether you are interested in groundbreaking scientific discoveries, tech innovations, or major sports events, our platform keeps you updated in real-time. Our carefully curated news selection helps you stay ahead, providing accurate and relevant stories tailored to diverse interests.

Login to Like (0) Login to Dislike (0)

Login to comment.

No comments yet.