New iOS 17.5 Update Includes Security Patches, but Bug Affects Alternative App Marketplaces

https://icaro.icaromediagroup.com/system/images/photos/16214199/original/open-uri20240515-18-tyls6q?1715807568
ICARO Media Group
News
15/05/2024 21h11

In the latest iOS 17.5 and iPadOS 17.5 updates, Apple has introduced 15 security patches for iPhone and iPad users. However, it appears that one of these patches has brought about an unforeseen software bug that is impacting alternative app marketplaces on iPhones.

According to a recent Apple support document, a security patch related to the MarketplaceKit framework has inadvertently caused a glitch preventing European iPhone users from reinstalling alternative app marketplaces, such as AltStore, if they delete the app after the initial installation. Apple is expected to rectify this issue with a subsequent update, possibly iOS 17.5.1.

While the majority of security updates aim to enhance users' privacy and protect against potential vulnerabilities, there are some issues that have raised concerns. One security researcher has expressed disappointment that their discovered iOS kernel vulnerability was not eligible for payment under the Apple Security Bounty program. This particular vulnerability, listed as "AppleAVD" in the iOS 17.5 security fixes, remains unresolved.

The security patches included in iOS 17.5 and iPadOS 17.5 address various impacts and descriptions. Some patches focus on improved memory handling to prevent arbitrary code execution with kernel privileges. Others tackle logic issues, enhancing checks to ensure user data remains secure. Additional fixes address privacy issues, such as safeguarding sensitive data and preventing unauthorized access to user locations.

Specifically for iPhone XS and later models, the updates aim to address potential vulnerabilities related to web browsing, lock screen access, sharing items from the lock screen, and safeguarding sensitive user data outputted by shortcuts.

Overall, the iOS 17.5 and iPadOS 17.5 updates introduce essential security enhancements for iPhone and iPad users. While the bug affecting alternative app marketplaces is an unfortunate consequence, it is expected to be resolved promptly by Apple. Users are advised to stay informed about subsequent updates, such as iOS 17.5.1, to ensure the best possible security measures are in place on their devices.

The views expressed in this article do not reflect the opinion of ICARO, or any of its affiliates.

Related