Apple Releases iOS 7.0.6 With Fix for SSL Connection Verification
According to an Apple Support Knowledge Base article, the SSL vulnerability allowed a hacker to capture or modify data in supposedly secure sessions.
iOS 7.0.6iOS 7.0.6 comes three weeks after the release of iOS 7.0.5, which was available only for a limited number of devices and more than three months after the release of iOS 7.0.4, a minor bug-fix update.
Available for: iPhone 4 and later, iPod touch (5th generation), iPad 2 and later
Impact: An attacker with a privileged network position may capture or modify data in sessions protected by SSL/TLS
Description: Secure Transport failed to validate the authenticity of the connection. This issue was addressed by restoring missing validation steps.
Apple has also released iOS 6.1.6 (build 10b500) for the iPhone 3GS and fourth-generation iPod touch.