Become a MacRumors Supporter for $50/year with no ads, ability to filter front page stories, and private forums.

MacRumors

macrumors bot
Original poster
Apr 12, 2001
67,515
37,818


While Apple's release notes for AirPods firmware typically offer few details on included changes, the company has published a separate support document outlining a security issue that was fixed in today's firmware updates for AirPods, AirPods Pro, AirPods Max, Powerbeats Pro, and Beats Fit Pro.

AirPods-3-Pro-2-and-Max-New-Firmware.jpg

According to the document, today's firmware updates address a security issue that could have allowed an attacker within Bluetooth range to spoof the details of a device you've previously connected your headphones to, allowing the attacker to gain access to your headphones.

Apple usually mentions in its support documents if a security issue is known to have been exploited in the wild, but the company has not indicated that this is the case with this issue. Still, it's a good idea to update the firmware on your headphones as soon as possible as others could be inspired to attempt to replicate an exploit of the issue now that its existence has been publicized.

There is no straightforward mechanism for initiating a firmware update for AirPods and Beats headphones, with Apple simply stating that the updates are "automatically delivered while your headphones are paired with and in Bluetooth range of your iPhone, iPad, or Mac."

Article Link: AirPods and Beats Firmware Updates Address Important Security Issue
 
Oh damn… that’s a big one.

I don’t think they will ever provide an “update now” functionality. They just want it to be an invisible, non user intervention process.
 
There is probably such a low likelihood of this being exploited in the wild to a consumer that there shouldn’t be any worry. Simply use your AirPods as normal and they will update as per the automatic update method Apple have implemented.

They go this route for updates on such accessories as vast majority of consumers wouldn’t even know they can be updated and wouldn’t care. The way they implement updates on AirPods is probably the best way. Unknown to the user and happening in the background. You don’t need to know or care about it.
 
“it's a good idea to update the firmware on your headphones as soon as possible”

“There is no straightforward mechanism for initiating a firmware update”

Exactly, the mechanism they have for updating firmware is pathetic to be honest. They build in software for your headphones but offer nothing to update firmware in it, yet every other Apple device does have an option or tells you if it's updating etc.

And the only way to 'connect' them is to leave the lid on the case open? And even then I'm not sure if it sleeps after a while?
 
  • Like
Reactions: Si Vis Pacem
There is probably such a low likelihood of this being exploited in the wild to a consumer that there shouldn’t be any worry. Simply use your AirPods as normal and they will update as per the automatic update method Apple have implemented.

They go this route for updates on such accessories as vast majority of consumers wouldn’t even know they can be updated and wouldn’t care. The way they implement updates on AirPods is probably the best way. Unknown to the user and happening in the background. You don’t need to know or care about it.
Exactly.

And while this, for once, is actually a fairly important update, the vast majority of AirPods firmware updates do nothing but minor improvements to efficiency and kill minor bugs.

I, personally, don't usually read about these firmware updates until days after they're available. And all(!) of the AirPods in our home have updated on their own by that time.

All Apple products should be kept as simple as possible. And, considering how few features and settings AirPods have, I don't need another app to interact with.

That would only make sense for me on a very high-end pair of AirPods Max, where one would probably want to tweak EQ and other things that impact the sound.

AirPods are not independent, mobile devices with their own OS. They are just wireless headphones/earbuds.

Sure, a button for updating firmware or being able to ask Siri to do it would maybe be nice. But I don't want anymore than that and don't feel we really need it.

Apple doesn't address the average AirPods firmware update for a reason. It's just Bluetooth headphones and there's simply nothing to talk about that would warrant an Apple employee writing up release notes or a support document. Anyone thinking otherwise should ditch AirPods altogether.
 
Last edited:
Good to know and happy to hear that the security issues have been fixed
 
Give us the 'Update now' button! I get it is good for most end users to do it automatically, but let the security oriented peeps try it out.
As far as I understand they push it as soon as it is available and the device is in the right state for an update, they don't want any user control over it, so the "Update Now" button would be redundant.
 
There is probably such a low likelihood of this being exploited in the wild to a consumer that there shouldn’t be any worry. Simply use your AirPods as normal and they will update as per the automatic update method Apple have implemented.

They go this route for updates on such accessories as vast majority of consumers wouldn’t even know they can be updated and wouldn’t care. The way they implement updates on AirPods is probably the best way. Unknown to the user and happening in the background. You don’t need to know or care about it.
They can have it both ways. Allow me to update the firmware while allowing it to update automatically. Apple re-introduced this for their help desk employees to update devices, just make it public.

There is clearly a need for an update because otherwise they wouldn't have introduced it.
 
  • Like
Reactions: Si Vis Pacem
My update hasn't gone through, and I've tried every combination that people have shared to try to force it. It would be helpful to have a way to do it ourselves.
 
  • Like
Reactions: BugeyeSTI
There was a story about Chinese companies selling wired bluetooth headphones with the user finding they didn’t work, but the store employee told them “Oh no, bluetooth has to be on in order for these wired AirPods to work.” :) Some folks in the thread had the hot take of “Who turns off bluetooth?”

I’d figure, folks concerned about exploits like these.
 
Give us the 'Update now' button! I get it is good for most end users to do it automatically, but let the security oriented peeps try it out.
If Apple provided an “update now” button then stories about an update being available wouldn’t get as much attention. :)
 
Register on MacRumors! This sidebar will go away, and you'll see fewer ads.