![]() |
Security Update: iPhone/iPod touch OS 3.1.3
(2010-02-01 06:53:05)Apple has updated iPhone/iPod touch OS to version 3.1.3. The updaate addresses the following issues:
- CoreAudio (CVE-2010-0036: iPhone OS 1.0 through 3.1.2, iPhone OS for iPod touch 1.1 through 3.1.2): Playing a maliciously crafted mp4 audio file may lead to an unexpected application termination or arbitrary code execution
- ImageIO (CVE-2009-2285: iPhone OS 1.0 through 3.1.2, iPhone OS for iPod touch 1.1 through 3.1.2): Viewing a maliciously crafted TIFF image may lead to an unexpected application termination or arbitrary code execution
- Recovery Mode (CVE-2010-0038: iPhone OS 1.0 through 3.1.2, iPhone OS for iPod touch 1.1 through 3.1.2): A person with physical access to a locked device may be able to access the user's data
- WebKit (CVE-2009-3384: iPhone OS 1.0 through 3.1.2, iPhone OS for iPod touch 1.1 through 3.1.2): Accessing a maliciously crafted FTP server could result in an unexpected application termination, information disclosure, or arbitrary code execution
- WebKit (CVE-2009-2841: iPhone OS 1.0 through 3.1.2, iPhone OS for iPod touch 1.1 through 3.1.2): Mail may load remote audio and video content when remote image loading is disabled


