
The Indian Laptop Emergency Response Group (CERT-In) has issued two vulnerability notes warning customers of safety flaws affecting gadgets operating on Android, iOS, and iPadOS. The primary one refers to a denial of service (DoS) vulnerability affecting iPhone and iPad fashions operating on latest variations of iOS and iPadOS. The second word highlights a number of flaws impacting Android gadgets that might permit malicious customers to realize unauthorised entry to a tool. In each circumstances, customers have been suggested to take acceptable motion to safeguard their smartphones and tablets.
Android, iOS Are Gadgets Vulnerable to DoS Assaults With out Updates
CERT-In states in vulnerability word CIVN-2025-0092 that there are a number of flaws affecting the Android working system that may very well be utilized by an attacker to run harmful code on a consumer’s gadget, and entry knowledge remotely. Malicious customers might additionally carry out a DoS assault on the gadget, after gaining elevated privileges.
These vulnerabilities have an effect on smartphones operating on Android 13, Android 14, and Android 15, in response to CERT-In. This successfully implies that hundreds of thousands of smartphones which can be operating on these variations of Android are susceptible to their gadgets being compromised except the related safety patches are put in on their gadget.
To be able to stay protected, customers should set up the most recent Android safety patches that have been rolled out to gadgets in Might. CERT-In says that smartphones with the most recent Might 1 safety patches will probably be shielded from these safety flaws. Nevertheless, customers might need to attend till these patches are made out there by smartphone OEMs, whereas Google Pixel homeowners with computerized updates ought to already be protected.
However, CERT-In’s CIVN-2025-0094 word states that iPhone fashions operating on software program that was launched earlier than iOS 18.3, or iPad fashions operating on iPadOS 18.3 (and iPadOS 17.7.3 on older fashions) are vulnerable to a DoS vulnerability.
The company warns that customers who’re operating on these older variations are liable to changing into “unresponsive or non-functional” in the event that they run malicious functions that may render them inoperable. Customers might want to restore these gadgets if they’re impacted by the DoS assault.
CERT-In says that customers who’ve up to date to iOS 18.3, iPadOS 18.3, and iPadOS 17.7.3 ought to stay shielded from the DoS vulnerability. Contemplating that iOS 18.3 was launched in January, many customers ought to have already got this model on their telephones and tablets. They could even be operating on iOS 18.5, which was released earlier this week.