On TechRepublic: 10 cool USB flash drive tricks
BNET Business Network:
BNET
TechRepublic
ZDNet

June 17th, 2009

Apple iPhone OS 3.0 update plugs 46 security holes

Posted by Ryan Naraine @ 11:25 am

Categories: Apple, Arbitrary Code Execution, Botnets, Browsers, Data theft, Denial of Service (DoS), Exploit code, Hackers, Java, Locally Running Web Servers, Malware, Mobile (In)Security, Passwords, Patch Watch, Pen testing, Responsible disclosure, iPhone

Tags: Apple iPhone, Malicious Code, Vulnerability, Apple Inc., Security, IPSec, Viruses And Worms, Networking, Ryan Naraine

Apple’s latest iPhone OS 3.0 software updates includes patches for multiple vulnerabilities, some with serious security implications.

The update, which is only available for download via iTunes, covers a total of 46 documented vulnerabilities, including several that allows malicious code execution if a user simply visits a rigged Web site or views a manipulated image.

According to an Apple advisory, the most serious vulnerabilities were fixed in CoreGraphics, ImageIO, Mail, Safari and WebKit.

The update also fixes security problems in IPSec, libxml, the MPEG-4 Video Codec, Profiles and Telephony.

Ryan NaraineRyan Naraine is a journalist and security evangelist at Kaspersky Lab. He manages Threatpost.com, a security news portal. Here is Ryan's full profile and disclosure of his industry affiliations.


Email Ryan Naraine

For daily updates on Ryan's activities, follow him on Twitter.

Subscribe to Zero Day via Email alerts or RSS.

  • Talkback
  • Most Recent of 17 Talkback(s)
Its the way ZDNet cacht clicks
After seeing other titles thats my conclusion. (Read the rest)
Posted by: MAMware Posted on: 07/05/09 You are currently: a Guest | | Terms of Use
iPhone isn't perfect  jaypeg | 06/17/09
Pay for security  MrViklund | 06/17/09
Good point.....  daMan25 | 06/17/09
Yes  macadam | 06/17/09
RE: Apple iPhone OS 3.0 update plugs 46 security holes  adamsbf2000@... | 06/18/09
RE: Apple iPhone OS 3.0 update plugs 46 security holes  bjbolduc | 06/22/09
Defective by design  honeymonster | 06/20/09
Defective by design?  debbert | 06/23/09
RE: Apple iPhone OS 3.0 update plugs 46 security holes  cryevisu123@... | 06/22/09
RE: Apple iPhone OS 3.0 update plugs 46 security holes  chrism_z | 06/22/09
Free Versions  debbert | 06/23/09
Well, the Win7 beta IS free...  yonian | 06/23/09
iPhone OS3 breaks WiFinder  yonian | 06/23/09
RE: Apple iPhone OS 3.0 update plugs 46 security holes  mdg1019 | 06/24/09
Wrong  DavidB63 | 06/29/09
Its the way ZDNet cacht clicks  MAMware | 07/05/09
RE: Apple iPhone OS 3.0 update plugs 46 security holes  TDI | 06/25/09

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement

Recent Entries

advertisement
Click Here

Archives

Favorite Links

ZDNet Blogs

White Papers, Webcasts, and Downloads