Become a MacRumors Supporter for $50/year with no ads, ability to filter front page stories, and private forums.

wirtandi

macrumors regular
Original poster
Feb 3, 2021
179
179
There is yet another vulnerability that needs to be patched. I have two simple questions about this:

1. In the article, a security expert Sean Wright said that this vulnerability can only get into your phone if you downloaded a shady app. Personally I only use big name, official apps. Generally, I should be safe right?

2. The only way to fix this is to update to iOS 15, which I would prefer to hold off right now, seeing as theres quite a number of bugs on ios 15, plus that CSAM thing of course.....Doesnt this seem unfair? Apple releases a fix, but in order to download the fix, they force you to download ios 15?
 
1. Big apps can be hacked as well. Just because they have more talented programmers doesn’t mean their software is bug free or even fewer bugs than small competitive apps.
2. If I tell you iOS 14.8 already have csam built in, would you upgrade? Backporting csam into iOS 14 isn’t off the table either, unless you use iOS 13 or older.
 
  • Like
Reactions: BugeyeSTI
I refused to update my X from iOS12 when iOS13 released and didn't update until iOS14 was released. During that time I was stuck on 12.4.1 as that was the last update before iOS13 released for the X so I had to risk security issues all through iOS13. That was my choice and I knew what was at risk but I made the decision to stay on a more stable and honestly an almost bug free 12.4.1 instead of a bug filled iOS13. I never had any security problems and whether that was luck or not it worked out. Nobody forced me to stay on 12.4.1 just like no one is forcing you to update. Do what you're comfortable with and deal with issues if they arise.. Apple only patches older iOS versions for devices that can't update to the latest version of iOS and that's never changed. You can wait to see if Apple offers a 14.8.1 for your device but I wouldn't count on it..
 
There is yet another vulnerability that needs to be patched. I have two simple questions about this:

1. In the article, a security expert Sean Wright said that this vulnerability can only get into your phone if you downloaded a shady app. Personally I only use big name, official apps. Generally, I should be safe right?

2. The only way to fix this is to update to iOS 15, which I would prefer to hold off right now, seeing as theres quite a number of bugs on ios 15, plus that CSAM thing of course.....Doesnt this seem unfair? Apple releases a fix, but in order to download the fix, they force you to download ios 15?
Does this vulnerability exist in iOS 14.8? According to Apple they're still making security updates for 14 so if they felt it was something important/necessary they would simply push out an update or push you to update themselves. Clearly Apple doesn't think it's needed.

Apple only patches older iOS versions for devices that can't update to the latest version of iOS and that's never changed. You can wait to see if Apple offers a 14.8.1 for your device but I wouldn't count on it..
They did specifically state they would be doing this for iOS 14.
 
Does this vulnerability exist in iOS 14.8? According to Apple they're still making security updates for 14 so if they felt it was something important/necessary they would simply push out an update or push you to update themselves. Clearly Apple doesn't think it's needed.


They did specifically state they would be doing this for iOS 14.
I know it was supposed to continue to be supported but 14.8 is no longer signed so unless something changes I'd say for now it doesn't seem they're following through
 
I know it was supposed to continue to be supported but 14.8 is no longer signed so unless something changes I'd say for now it doesn't seem they're following through
But again, does the issues in the 15.0.2 patch really apply to 14.8? Remember that 14.8 was a last minute update right before 15 was released and likely contained security patches. My guess is that it was patched already, if it needed to be, or Apple will patch it soon in a 14.8.1 patch. It is definitely in Apple's best interest to keep 14 security patched.
 
But again, does the issues in the 15.0.2 patch really apply to 14.8? Remember that 14.8 was a last minute update right before 15 was released and likely contained security patches. My guess is that it was patched already, if it needed to be, or Apple will patch it soon in a 14.8.1 patch. It is definitely in Apple's best interest to keep 14 security patched.
Yes, if Apple could somehow confirm that this vulnerability only exists in 15.0.2 not 14.8, that would be so good. Otherwise I feel like Apple is "forcing" us all to update to ios 15 by making the fix only available in ios 15.
 
Still need help with this. Is the vulnerability present in 14.8? If so, because there is no patch for ios 14, then Apple is pretty much forcing us to download ios 15.....
 
I think you are panicking over an issue that likely is not a threat to your iThingie. Take some deep breaths and relax. If the threat is still a threat to those running 14.8, then Apple will address it, if they haven’t already done so. The sky is NOT falling…
 
  • Like
Reactions: chscag
Register on MacRumors! This sidebar will go away, and you'll see fewer ads.