Samedi, 16 Juillet 2011 03:23
Apple Releases iOS 4.3.4 – Patches PDF Vulnerability
Apple recently seeded iOS 4.3.4 for its iOS devices including the iPhone 4, iPhone 3GS, iPad 2, iPad, and 3rd and 4th generation iPod Touch devices. Apple also release a comparable update for Verizon Wireless’ CDMA iPhone 4, iOS 4.2.9. These new builds include a security update that addresses the vulnerability with PDF files. This directly patches the extremely popular JailbreakMe.com jailbreak solution, which was by far the easiest way to jailbreak iOS devices. JailbreakMe will no longer function on devices running the newer firmwares, which are available now on iTunes. MuscleNerd tweeted the following warning after Apple deployed the new firmware: iOS 4.3.4 is out…please don’t update, or you’ll lose your jailbreak! And back up your 4.3.3 blobs soon! A support document, which outlines the security content of iOS 4.3.4 was released by Apple. The document mentions the following: iOS 4.3.4 Software Update CoreGraphicsAvailable for: iOS 3.0 through 4.3.3 for iPhone 3GS and iPhone 4 (GSM model), iOS 3.1 through 4.3.3 for iPod touch (3rd generation) and later, iOS 3.2 through 4.3.3 for iPadImpact: Viewing a maliciously crafted PDF file may lead to an unexpected application termination or arbitrary code executionDescription: A buffer overflow exists in FreeType’s handling of TrueType fonts. Viewing a maliciously crafted PDF file may lead to an unexpected application termination or arbitrary code execution.CVE-ID CVE-2010-3855 CoreGraphicsAvailable for: iOS 3.0 through 4.3.3 for iPhone 3GS and iPhone 4 (GSM model), iOS 3.1 through 4.3.3 for iPod touch (3rd generation) and later, iOS 3.2 through 4.3.3 for iPadImpact: Viewing a maliciously crafted PDF file may lead to an unexpected application termination or arbitrary code executionDescription: A signedness issue exists in FreeType’s handling of Type 1 fonts. Viewing a maliciously crafted PDF file may lead to an unexpected application termination or arbitrary code execution.CVE-ID CVE-2011-0226 IOMobileFrameBufferAvailable for: iOS 3.0 through 4.3.3 for iPhone 3GS and iPhone 4 (GSM model), iOS 3.1 through 4.3.3 for iPod touch (3rd generation) and later, iOS 3.2 through 4.3.3 for iPadImpact: Malicious code running as the user may gain system privilegesDescription: An invalid type conversion issue exists in the use of IOMobileFrameBuffer queueing primitives, which may allow malicious code running as the user to gain system privileges.CVE-ID CVE-2011-0227 Authors:
Read 2564 times
Published in
News Technologique-Tech News
Last WebBuzz
-
WebBuzz du 04/12/2015: Animation stroboscopique de Scultures: Blooms-Blooms Strobe-Animated Sculptures
Read 13276 times
-
WebBuzz du 03/12/2015: Le challenge mobil 1: 240cm avec Jenson button-Mobil 1 challenge 240 cm with Jenson button
Read 13270 times
-
WebBuzz du 02/12/2015: Carpes et poissons chat à Tchernobyl-Chernobyl catfishes and carps
Read 14188 times
-
WebBuzz du 01/12/2015: La porte des étoiles par le groupe playmid-The Playmid's star gate
Read 14825 times
-
WebBuzz du 30/11/2015: Vie sauvage en artique filmé par drone-Wild life in artic recorded by a drone
Read 13884 times
-
WebBuzz du 27/11/2015: Les migrants de Calais: la réalité-The truth about Calais emigrants
Read 11075 times
-
WebBuzz du 26/11/2015: Un batteur vole la veddette-Best drummer ever
Read 8035 times
-
WebBuzz du 25/11/2015: Une cheminée s'écroule sur une pelleteuse-A chimney collapsed on a excavator
Read 13193 times
-
WebBuzz du 24/11/2015: Un cargo perd son ancre-A freighter loose its anchor
Read 8148 times
-
WebBuzz du 23/11/2015: Destruction du super star destroyer en LEGO-Giant Star Wars LEGO Super Star Destroyer Shattered
Read 8161 times
Accusé de reception
bancaires
bilan
cheval
configuration
Confirmation de lecture
copie
copies
Dolibarr
duplicata
EDF
Excel
exim
facture
factures
Firefox
Google cloud print
hameçonnage
IE6
IE7
impression
informatique
itunes
java
linux
luxembourgeois
mac os
MAJ
micosoft
microsoft
Office
Outlook
phishing
quicktime
rappels
relances
seamonkey
serveurs
spécifique
Sécurité
Tentative
thunderbird
troie
utilisant
V322
Vista
Windows
Windows 7
XP/2000 : Activer le pavé numérique
établissements