Got a tip for us? Share it...

Software Fix for iOS PDF-Handling Vulnerability Awaiting Release


CNET reports that Apple has developed a software fix for the iOS security hole exploited to enable a Web-based jailbreak over the weekend, and that the fix will be deployed in an upcoming software update.

On Wednesday an Apple spokeswoman said in a statement, "We're aware of this reported issue, we have already developed a fix and it will be available to customers in an upcoming software update."

Apple declined to say when the update would be pushed out.

Apple had reported just yesterday that it was investigating the issue, which actually comprises a pair of flaws, and has obviously moved rapidly to close the security hole.

There are two distinct vulnerabilities in the iPhone uncovered with the jailbreak software's release, principal analyst Charlie Miller of Independent Security Evaluators told CNET Tuesday. One flaw is in the way the browser parses PDF files, enabling the code to get inside a protective sandbox, and the other hole allows code to break out of the sandbox and get root, or control, privileges on the device.

While the vulnerability was exploited to offer users a simple method to jailbreak their iOS devices in this case, it could easily be used as an entry point for the execution of malicious code.

Top Rated Comments

(View all)

20 months ago
Apple is quick! :D I wonder when they will release it?
Rating: 0 Positives / 0 Negatives
20 months ago
Sounds good, but Apple needs to change the way they do iOS software updates. No matter how small the changes are, users have to download the entire +350MB OS. This is very inefficient and probably discourages a lot of users from updating. Apple needs to do incremental updates.
Rating: 0 Positives / 0 Negatives
20 months ago

Apple is quick! :D I wonder when they will release it?


My take it is out before the end of the month. Anything that puts native code at the kernal level is nipped in the butt quick.
Rating: 0 Positives / 0 Negatives
20 months ago
lets only hope they get it with 4.1 and a proximity sensor fix!
Rating: 0 Positives / 0 Negatives
20 months ago
so, basically, no more jailbreaking this way....right?
Rating: 0 Positives / 0 Negatives
20 months ago

Apple is quick! :D I wonder when they will release it?


Tonight would be nice.
Rating: 0 Positives / 0 Negatives
20 months ago

Sounds good, but Apple needs to change the way they do iOS software updates. No matter how small the changes are, users have to download the entire +350MB OS. This is very inefficient and probably discourages a lot of users from updating. Apple needs to do incremental updates.


I think updates fixing the holes that allow jailbreaking is the main reason people don't update.
Rating: 0 Positives / 0 Negatives
20 months ago
Don't see why Apple really cares :rolleyes:. There would be a lot less iPhones to replace/repair since jail-breaking voids the warranty.

I think most people jailbreak to unlock anyways to use on other carriers besides AT&T. I bet AT&T pushes Apple to avoid that from happening.
Rating: 0 Positives / 0 Negatives
20 months ago
Of course the theoretical exploit vector will be closed off quickly.

Good job Apple.

so, basically, no more jailbreaking this way....right?


Not for another 3 years, maybe.

Sounds good, but Apple needs to change the way they do iOS software updates. No matter how small the changes are, users have to download the entire +350MB OS. This is very inefficient and probably discourages a lot of users from updating. Apple needs to do incremental updates.


50K anti-jailbreak fix!


Don't see why Apple really cares :rolleyes:. There would be a lot less iPhones to replace/repair since jail-breaking voids the warranty.

I think most people jailbreak to unlock anyways to use on other carriers besides AT&T. I bet AT&T pushes Apple to avoid that from happening.


Only true if it breaks something which software restore cannot fix.
Rating: 0 Positives / 0 Negatives
20 months ago
ha ha ha! Well, jailbreakme.com 3.0 coming soon! and so on and on and on and on..... and by the way... Apple is loosing the coolness more and more... beware, iFans are dying slowly, young users don't care of Apple history and today it doesn't matter who introduce the first gadget...it who build the best one. tic toc tic toc.... people are getting aware.
Rating: 0 Positives / 0 Negatives

[ Read All Comments ]