Multiple vulnerabilities have been identified in Apple iPhone and iPod touch, which could be exploited by attackers to bypass security restrictions, gain knowledge of sensitive information, cause a denial of service or compromise a vulnerable system. These issues are caused by buffer overflows, memory corruptions and use-after-free, integer overflows and underflows, uninitialized pointers, implementation and design issues, memory leaks, and input validation errors in CoreGraphics, Exchange, ImageIO, ICU, IPSec, libxml, Mail, MPEG-4 Video Codec, Profiles, Safari, Telephony, and WebKit. For additional information, see : VUPEN/ADV-2008-2345 - VUPEN/ADV-2008-2419 - VUPEN/ADV-2008-3155 - VUPEN/ADV-2008-3176 - VUPEN/ADV-2009-0469 - VUPEN/ADV-2009-1058 - VUPEN/ADV-2009-1065 - VUPEN/ADV-2009-1297 - VUPEN/ADV-2009-1522
Affected Products
Apple iPhone OS versions 1.0 through 2.2.1
Apple iPhone OS for iPod touch versions 1.1 through 2.2.1
Solution
Upgrade to Apple iPhone OS version 3.0.
References
http://www.vupen.com/english/advisories/2009/1621
http://support.apple.com/kb/HT3639
Credits
Vulnerabilities reported by the vendor, Alin Rad Pop (Secunia Research), Will Dormann (CERT/CC), Barry K. Nathan, Tavis Ormandy (Google Security Team), FD (Securus Global), Chris Weber (Casaba Security), Adams (TynTec), Aviv Raff, Collin Mulliner (Fraunhofer SIT), Si Brindley, Joshua Belsky, Masaki Yoshida, Thomas Raffetseder (International Secure Systems Lab), Nils via ZDI, Michal Zalewski and Dean McNamee (Google Inc.), Jesse Ruderman (Mozilla Corporation), SkyLined (Google Inc.), Collin Jackson (Stanford University), Chris Evans (Google Inc.), Feng Qian (Google Inc.), Amit Klein (Trusteer), Per von Zweigbergk, Thierry Zoller via ZDI, Robert Swiecki (Google Security Team), wushi & ling (team509) via ZDI, Adam Barth and Joel Weinberger (UC Berkeley).
ChangeLog
2009-06-18 : Initial release
Vulnerability Management
Subscribe to VUPEN VNS and receive real-time alerts with CVE, CWE, and CVSS when new advisories or patches relevant to your systems and network configurations are available.
Feedback
If you have additional information or corrections for this security advisory please submit them via our contact form.