{"id":1113754,"date":"2024-01-23T02:16:27","date_gmt":"2024-01-23T04:16:27","guid":{"rendered":"https:\/\/teknomers.com\/fr\/apple-publie-un-correctif-pour-le-zero-day-critique-sur-les-iphones-et-mac-mettre-a-jour-maintenant\/"},"modified":"2024-01-23T02:16:31","modified_gmt":"2024-01-23T04:16:31","slug":"apple-publie-un-correctif-pour-le-zero-day-critique-sur-les-iphones-et-mac-mettre-a-jour-maintenant","status":"publish","type":"post","link":"https:\/\/teknomers.com\/fr\/apple-publie-un-correctif-pour-le-zero-day-critique-sur-les-iphones-et-mac-mettre-a-jour-maintenant\/","title":{"rendered":"Apple publie un correctif pour le Zero-Day critique sur les iPhones et Mac &#8211; Mettre \u00e0 jour maintenant"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div>\n<p><span class=\"p-author\"><i class=\"icon-font icon-calendar\">\ue802<\/i><span class=\"author\">23 janvier 2024<\/span><i class=\"icon-font icon-user\">\ue804<\/i><span class=\"author\">R\u00e9daction<\/span><\/span><span class=\"p-tags\">Vuln\u00e9rabilit\u00e9\/s\u00e9curit\u00e9 des appareils<\/span><\/p>\n<\/div>\n<div id=\"articlebody\">\n<div class=\"separator\" style=\"clear: both;\"><a rel=\"nofollow\" href=\"https:\/\/teknomers.com\/fr\/wp-content\/uploads\/2024\/01\/Apple-publie-un-correctif-pour-le-Zero-Day-critique-sur-les.jpg\" style=\"display: block; text-align: center; clear: left; float: left;\"><\/a><\/div>\n<p>Apple a publi\u00e9 lundi des mises \u00e0 jour de s\u00e9curit\u00e9 pour les navigateurs Web iOS, iPadOS, macOS, tvOS et Safari afin de corriger une faille zero-day qui a \u00e9t\u00e9 activement exploit\u00e9e dans la nature.<\/p>\n<p>Le probl\u00e8me, suivi comme <strong>CVE-2024-23222<\/strong>, est un bug de confusion de type qui pourrait \u00eatre exploit\u00e9 par un acteur malveillant pour ex\u00e9cuter du code arbitraire lors du traitement de contenu Web con\u00e7u de mani\u00e8re malveillante.  Le g\u00e9ant de la technologie a d\u00e9clar\u00e9 que le probl\u00e8me avait \u00e9t\u00e9 r\u00e9solu gr\u00e2ce \u00e0 des contr\u00f4les am\u00e9lior\u00e9s.<\/p>\n<div class=\"check_two clear babsi\"><center class=\"cf\"><a rel=\"nofollow noopener\" href=\"https:\/\/thn.news\/tl_d1\" target=\"_blank\" title=\"Cybersecurity\"><img loading=\"lazy\" decoding=\"async\" class=\"lazyload\" alt=\"La cyber-s\u00e9curit\u00e9\" src=\"https:\/\/teknomers.com\/fr\/wp-content\/uploads\/2024\/01\/Les-attaques-DDoS-contre-le-secteur-des-services-environnementaux-augmentent.gif\" width=\"727\" height=\"90\"\/><\/a><\/center><\/div>\n<p><a rel=\"nofollow noopener\" href=\"https:\/\/cwe.mitre.org\/data\/definitions\/843.html\" target=\"_blank\">Vuln\u00e9rabilit\u00e9s li\u00e9es \u00e0 la confusion des types<\/a>en g\u00e9n\u00e9ral, pourrait \u00eatre utilis\u00e9 pour effectuer un acc\u00e8s m\u00e9moire hors limites, ou conduire \u00e0 un crash et \u00e0 l&#8217;ex\u00e9cution de code arbitraire.<\/p>\n<p>Apple, dans un avis laconique, a reconnu qu&#8217;il \u00e9tait &#8220;au courant d&#8217;un rapport selon lequel ce probl\u00e8me pourrait avoir \u00e9t\u00e9 exploit\u00e9&#8221;, mais n&#8217;a pas partag\u00e9 d&#8217;autres d\u00e9tails sur la nature des attaques ou sur les acteurs malveillants qui exploitent cette lacune.<\/p>\n<p>Les mises \u00e0 jour sont disponibles pour les appareils et syst\u00e8mes d&#8217;exploitation suivants &#8211;<\/p>\n<ul>\n<li aria-level=\"1\"><a rel=\"nofollow noopener\" href=\"https:\/\/support.apple.com\/en-us\/HT214059\" target=\"_blank\"><strong>iOS 17.3 et iPadOS 17.3<\/strong><\/a>  &#8211; iPhone XS et versions ult\u00e9rieures, iPad Pro 12,9 pouces 2e g\u00e9n\u00e9ration et versions ult\u00e9rieures, iPad Pro 10,5 pouces, iPad Pro 11 pouces 1re g\u00e9n\u00e9ration et versions ult\u00e9rieures, iPad Air 3e g\u00e9n\u00e9ration et versions ult\u00e9rieures, iPad 6e g\u00e9n\u00e9ration et versions ult\u00e9rieures et iPad mini 5e g\u00e9n\u00e9ration et ensuite<\/li>\n<li aria-level=\"1\"><a rel=\"nofollow noopener\" href=\"https:\/\/support.apple.com\/en-us\/HT214063\" target=\"_blank\"><strong>iOS 16.7.5 et iPadOS 16.7.5<\/strong><\/a>  &#8211; iPhone 8, iPhone 8 Plus, iPhone X, iPad 5e g\u00e9n\u00e9ration, iPad Pro 9,7 pouces et iPad Pro 12,9 pouces 1re g\u00e9n\u00e9ration<\/li>\n<li aria-level=\"1\"><a rel=\"nofollow noopener\" href=\"https:\/\/support.apple.com\/en-us\/HT214061\" target=\"_blank\"><strong>macOS Sonoma 14.3<\/strong><\/a>  &#8211; Mac ex\u00e9cutant macOS Sonoma<\/li>\n<li aria-level=\"1\"><a rel=\"nofollow noopener\" href=\"https:\/\/support.apple.com\/en-us\/HT214058\" target=\"_blank\"><strong>macOS Ventura 13.6.4<\/strong><\/a>  &#8211; Mac ex\u00e9cutant macOS Ventura<\/li>\n<li aria-level=\"1\"><a rel=\"nofollow noopener\" href=\"https:\/\/support.apple.com\/en-us\/HT214057\" target=\"_blank\"><strong>macOS Monterey 12.7.3<\/strong><\/a>  &#8211; Mac ex\u00e9cutant macOS Monterey<\/li>\n<li aria-level=\"1\"><a rel=\"nofollow noopener\" href=\"https:\/\/support.apple.com\/en-us\/HT214055\" target=\"_blank\"><strong>tvOS 17.3<\/strong><\/a>  &#8211; Apple TV HD et Apple TV 4K (tous les mod\u00e8les)<\/li>\n<li aria-level=\"1\"><a rel=\"nofollow noopener\" href=\"https:\/\/support.apple.com\/en-us\/HT214056\" target=\"_blank\"><strong>Safari 17.3<\/strong><\/a>  &#8211; Mac ex\u00e9cutant macOS Monterey et macOS Ventura<\/li>\n<\/ul>\n<p>Ce d\u00e9veloppement constitue la premi\u00e8re vuln\u00e9rabilit\u00e9 Zero Day activement exploit\u00e9e \u00e0 \u00eatre corrig\u00e9e par Apple cette ann\u00e9e.  L\u2019ann\u00e9e derni\u00e8re, le fabricant d\u2019iPhone s\u2019est attaqu\u00e9 \u00e0 20 failles Zero Day utilis\u00e9es dans des attaques r\u00e9elles.<\/p>\n<div class=\"check_two clear babsi\"><center class=\"cf\"><a rel=\"nofollow noopener\" href=\"https:\/\/thn.news\/3UvK59NV\" target=\"_blank\" title=\"Cybersecurity\"><img loading=\"lazy\" decoding=\"async\" class=\"lazyload\" alt=\"La cyber-s\u00e9curit\u00e9\" src=\"https:\/\/teknomers.com\/fr\/wp-content\/uploads\/2024\/01\/Nouveau-JinxLoader-ciblant-les-utilisateurs-avec-les-logiciels-malveillants-Formbook.png\" width=\"727\" height=\"90\"\/><\/a><\/center><\/div>\n<p>En outre, Apple a \u00e9galement r\u00e9troport\u00e9 les correctifs pour CVE-2023-42916 et CVE-2023-42917 \u2013 pour lesquels les correctifs ont \u00e9t\u00e9 publi\u00e9s en d\u00e9cembre 2023 \u2013 sur des appareils plus anciens \u2013<\/p>\n<ul>\n<li aria-level=\"1\"><a rel=\"nofollow noopener\" href=\"https:\/\/support.apple.com\/en-us\/HT214062\" target=\"_blank\"><strong>iOS 15.8.1 et iPadOS 15.8.1<\/strong><\/a>  &#8211; iPhone 6s (tous les mod\u00e8les), iPhone 7 (tous les mod\u00e8les), iPhone SE (1re g\u00e9n\u00e9ration), iPad Air 2, iPad mini (4e g\u00e9n\u00e9ration) et iPod touch (7e g\u00e9n\u00e9ration)<\/li>\n<\/ul>\n<p>Cette divulgation fait \u00e9galement suite \u00e0 un rapport selon lequel les autorit\u00e9s chinoises <a rel=\"nofollow noopener\" href=\"https:\/\/sfj.beijing.gov.cn\/sfj\/sfdt\/ywdt82\/flfw93\/436331732\/index.html\" target=\"_blank\">r\u00e9v\u00e9l\u00e9<\/a> qu&#8217;ils ont utilis\u00e9 des vuln\u00e9rabilit\u00e9s pr\u00e9c\u00e9demment connues dans la fonctionnalit\u00e9 AirDrop d&#8217;Apple pour aider les forces de l&#8217;ordre \u00e0 identifier les exp\u00e9diteurs de contenu inappropri\u00e9, en utilisant une technique bas\u00e9e sur les tables arc-en-ciel.<\/p>\n<p><\/p>\n<div class=\"cf note-b\">Vous avez trouv\u00e9 cet article int\u00e9ressant ?  Suivez-nous sur <a rel=\"nofollow noopener\" href=\"https:\/\/twitter.com\/thehackersnews\" target=\"_blank\">Twitter <i class=\"icon-font icon-twitter\">\uf099<\/i><\/a>  et <a rel=\"nofollow noopener\" href=\"https:\/\/www.linkedin.com\/company\/thehackernews\/\" target=\"_blank\">LinkedIn<\/a> pour lire plus de contenu exclusif que nous publions.<\/div>\n<\/div>\n<p><script async src=\"https:\/\/platform.twitter.com\/widgets.js\" charset=\"utf-8\"><\/script><br \/>\n<br \/><br \/>\n<br \/><a href=\"https:\/\/thehackernews.com\/2024\/01\/apple-issues-patch-for-critical-zero.html\" rel=\"nofollow noopener\" target=\"_blank\">ttn-fr-57<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>\ue80223 janvier 2024\ue804R\u00e9dactionVuln\u00e9rabilit\u00e9\/s\u00e9curit\u00e9 des appareils Apple a publi\u00e9 lundi des mises \u00e0 jour de s\u00e9curit\u00e9 pour les navigateurs Web iOS, iPadOS, macOS, tvOS et Safari afin de corriger une faille zero-day qui a \u00e9t\u00e9 activement exploit\u00e9e dans la nature. Le probl\u00e8me, suivi comme CVE-2024-23222, est un bug de confusion de type qui pourrait \u00eatre exploit\u00e9 [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":1113755,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[6],"tags":[200292,2479,4168,32471,22,4165,4161,200267,68855,3995,4159,4171,65,200271,16435,617,6454,200268,200269,200270,185,2212,128318,4172,4169,60,4166,4164,35759],"class_list":["post-1113754","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-technologie","tag-actualites-sur-la-cybersecurite","tag-apple","tag-comment-pirater","tag-correctif","tag-critique","tag-cyber-attaques","tag-cyber-mises-a-jour","tag-cyberactualites","tag-iphones","tag-jour","tag-lactualite-de-la-cybersecurite-aujourdhui","tag-lactualite-des-hackers","tag-les","tag-logiciel-malveillant-rancongiciel","tag-mac","tag-maintenant","tag-mettre","tag-mises-a-jour-sur-la-cybersecurite","tag-nouvelles-des-pirates","tag-nouvelles-sur-le-piratage","tag-pour","tag-publie","tag-securite-des-informations","tag-securite-informatique","tag-securite-internet","tag-sur","tag-violation-de-donnees","tag-vulnerabilite-logicielle","tag-zeroday"],"_links":{"self":[{"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/posts\/1113754","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/comments?post=1113754"}],"version-history":[{"count":0,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/posts\/1113754\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/media\/1113755"}],"wp:attachment":[{"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/media?parent=1113754"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/categories?post=1113754"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/teknomers.com\/fr\/wp-json\/wp\/v2\/tags?post=1113754"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}