Ub News

Universal Broadcasting News
Subscribe
  • Home
  • About
  • Writing Jobs

Apple fixing acute SMS vulnerability in iPhone OS

July 04, 2009 By: Madeeha Ajamal Category: Science & Tech

Bookmark and Share

Apple is currently busy in fixing a serious bug detected in the SMS functionality in the iPhone, as per Safari Charlie. Besides this, he added that the users interested in security should ignore jail breaking their iPhones. This error can actually lead to the arbitrary and unpredictable execution of the code.

Miller has not briefed about this bug till yet, going for an agreement with the Apple, although he and Vincenzo Iozzo will do detailing about this later in the Black Hat Security Conference conducting in Las Vegas.

In a presentation at the SyScan security conference conducting in Singapore, Miller had explained, how a vulnerability in iPhone’s handling of SMS messages makes it possible to send code without a text. Contempt of SMS’s 140 byte size restriction, iPhone has the capability to reassemble larger messages, broken to fit the limitation size allowing larger programs to be delivered. To execute SMS data as code inspite of text, iPhone can be instructed to implement the code without any communication with the user and root privileges. This susceptibility makes it workable to turn off the signed code check built in and load unsigned libraries to iPhone OS.

This thing grants an attacker or hacker to load entire shell environment and have complete control over the device, involving full access to any data stored on it. Last month, Miller has told Ars that he is not confirmed about the existence of vulnerability in iPhone OS 3.0; still Apple is working on that bug. According to iPhone OS 3.1 in beta, it exists in the latest version, instead of Apple patching 46 other potential security issues in the update.

In countless occasions, Miller had noticed that iPhone OS has good security features as well as popularity. Secure and safe environment is created due to the individual application sandboxes and code signing requirements, though till now these have not been targeted by the attackers. In addition, he said, during his SyScan presentation, a side effect of jailbreaking an iPod touch or iPhone cuts around 80% of these kinds of protection and security concerns that the users should know about avoiding jailbreaking.

It has been expected that Apple will get a fix for the SMS issue this month before Miller and Iozzo will be detailing about that at the Black Hat conference i.e. scheduled at 25 July. Till now, this has not been confirmed that the patch will be availed either in the form of iPhone OS 3.1 or individual 3.0.x point release.

Tell a Friend

Comments are closed.

← Apple iPhone is the best: Japan
Bank of America, Citi, JPMorgan, Wells Stk Futures fell Before the Bell →

  • Categories

    • Auto (86)
    • Business (749)
    • Entertainment (295)
    • Health (39)
    • National (644)
      • Business News (269)
      • Politics News (36)
      • Sports News (39)
    • Politics (25)
    • Science & Tech (1661)
    • Sports (49)
    • World (380)
      • Asia (61)
      • Australia (16)
      • Europe (41)
      • U.S. (196)
  • Recent Post

    • KR, FEED, RSCR, EDAP, DKS, FRPT, CMA, THO Popular Stocks
    • eScan now updated with Rescue Disk File feature
    • Reliance Communications launches ‘Socially’ Application on RWorld
    • India’s women’s bill ends in a stalemate
    • Daimler, Tata Motors, Hewlett-Packard, AT&T and Boeing Stk Future Mixed Before the Bell
    • Google, Kraft Foods, AIG, MetLife, Royal Dutch Shell and PetroChina Stk Future Mixed Before the Bell
    • Nokia develops technique for self charging phones
    • Fourth generation Nissan Micra known as March in Japan to be sold in 160 countries
    • INTEX IN 4470 2G Dual SIM handset supporting Video Chat unveiled
    • Nissan announced 38 winning stories including the Grand Prix award
  • Archives

    • March 2010
    • February 2010
    • January 2010
    • December 2009
    • November 2009
    • October 2009
    • September 2009
    • August 2009
    • July 2009
    • June 2009
    • May 2009
    • April 2009
    • March 2009
    • February 2009
    • January 2009
    • December 2008
    • November 2008
    • October 2008

    Follow ub_news on Twitter

  • Ub News

    • Article Directory
    • Free Press Release Service
    • Link Directory
    • News
    • Submit Link
    • Ub News UK
  • Meta

    • Log in
  • Search on This Blog

  • International Blog Directory


Ub News © 2009 All Rights Reserved. Using WordPress 2.9.1 Engine
Entries and Comments.
Optimized by Seo Web Design