The Comex hacker has released the source code of its site JailbreakMe 3.0 for unlocking Apple devices using the iOS 4.3.3. Named Saffron, Comex tool uses a vulnerability present in the PDF and font management software to inject the device iOS. Comex said that two holes are used: first by running the PDF in Safari Mobile Freetype fonts in Type 1. This vulnerability allows operation of another flaw in the kernel for the execution of unsigned code to have administrator privileges and install the application.
This flaw in the kernel, the heart of the system is also used at each restart to make the permanent unlock the device. Obviously, the publication of this technique undermines the security of iOS devices. Fortunately, Apple has already released a patch filling this gap while it is advisable for users of unbridled iOS 4.3.3, install Patch 2 PDF available on Cydia that allows you to plug this loophole. The source code JailbreakMe 3.0 is available on the GitHub Comex page. (https://github.com/comex)

0 comments:
Post a Comment