Apple iOS for iPhone/iPad/iPod touch Privilege Escalation Vulnerability
BID:42151
Info
Apple iOS for iPhone/iPad/iPod touch Privilege Escalation Vulnerability
| Bugtraq ID: | 42151 |
| Class: | Unknown |
| CVE: |
CVE-2010-1797 CVE-2010-2973 |
| Remote: | No |
| Local: | Yes |
| Published: | Aug 02 2010 12:00AM |
| Updated: | Apr 13 2015 10:11PM |
| Credit: | comex |
| Vulnerable: |
SuSE SUSE Linux Enterprise Server 10 SP2 Gentoo Linux Apple iPod Touch 3.1.3 Apple iPod Touch 3.1.2 Apple iPod Touch 3.1.1 Apple iPod Touch 3.0 Apple iPhone 3.1.3 Apple iPhone 3.1.2 Apple iPhone 3.0.1 Apple iPhone 3.1 Apple iPhone 3.0 Apple iPad 3.2.1 Apple iPad 3.2 Apple iPad 0 Apple iOS 4.0.1 Apple iOS 3.2.1 Apple iOS 4 Apple iOS 3.2 |
| Not Vulnerable: |
Apple iOS 4.0.2 Apple iOS 3.2.2 |
Discussion
Apple iOS for iPhone/iPad/iPod touch Privilege Escalation Vulnerability
Apple iOS for iPhone, iPod touch, and iPad is prone to a local privilege-escalation vulnerability that affects the 'IOSurface' component.
Successfully exploiting this issue can allow attackers to elevate privileges, leading to a complete compromise of the device.
iOS versions 4.0.1 and prior are vulnerable.
NOTE (August 12, 2010): This BID was previously titled 'Apple iOS Multiple Vulnerabilities' and included details about a remote code-execution vulnerability. Following further analysis, we determined that the remote code-execution issue was already documented in BID 42241 (FreeType Compact Font Format (CFF) Multiple Stack Based Buffer Overflow Vulnerabilities).
Apple iOS for iPhone, iPod touch, and iPad is prone to a local privilege-escalation vulnerability that affects the 'IOSurface' component.
Successfully exploiting this issue can allow attackers to elevate privileges, leading to a complete compromise of the device.
iOS versions 4.0.1 and prior are vulnerable.
NOTE (August 12, 2010): This BID was previously titled 'Apple iOS Multiple Vulnerabilities' and included details about a remote code-execution vulnerability. Following further analysis, we determined that the remote code-execution issue was already documented in BID 42241 (FreeType Compact Font Format (CFF) Multiple Stack Based Buffer Overflow Vulnerabilities).
Exploit / POC
Apple iOS for iPhone/iPad/iPod touch Privilege Escalation Vulnerability
This vulnerability is being exploited to jailbreak vulnerable devices.
The 'JailbreakMe' source code was released by comex. Please see the references for details.
This vulnerability is being exploited to jailbreak vulnerable devices.
The 'JailbreakMe' source code was released by comex. Please see the references for details.
Solution / Fix
Apple iOS for iPhone/iPad/iPod touch Privilege Escalation Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
Apple iOS for iPhone/iPad/iPod touch Privilege Escalation Vulnerability
References:
References:
- iOS Homepage (Apple)
- iPhone Product Page (Apple)
- iPod touch Product Page (Apple)
- Source now available for anyone interested (comex)