CERT-In Warns macOS and Chrome Users of High-Risk Security Vulnerabilities
CERT-In has issued a high-risk security advisory warning macOS and Google Chrome users about serious vulnerabilities. These vulnerabilities in Apple's productivity apps and the Chrome desktop browser could lead to data theft or system-wide compromise. Users are urged to patch their software immediately to prevent unauthorized access and information leakage.
Indian Computer Emergency Response Team (CERT In) has released a security alert for users of macOS and Google Chrome. In the alert, CERT In has cautioned users of possible security threats that may be experienced if updates are not installed on time. In the alert, it was noted that there are security flaws in Apple's productivity applications and Google's desktop browser that can be exploited by hackers through malicious files or requests. In conclusion, it was noted that delays in updating the applications may lead to system-wide compromise or data leakage.
In an advisory issued on January 29, CERT-In, an Indian government cybersecurity response center, issued an alert to macOS users about several vulnerabilities found in Apple’s Pages and Keynote applications. These vulnerabilities have been identified under vulnerability note CIVN-2026-0056, which affects Pages and Keynote versions prior to version 15.1. According to CERT-In, these vulnerabilities are caused by an out-of-bounds read issue in Pages and an error in the QuickLook component used by Keynote.
Attackers could exploit these vulnerabilities by persuading users to open specially crafted documents, thereby gaining unauthorized access to sensitive information. Apple fixed these issues in Pages 15.1 and Keynote 15.,1 released on January 28th for macOS Sequoia 15.6 and later. These vulnerabilities are tracked as CVE-2025-46316 and CVE-2025-46306.