Apple releases iOS update for Pangu jailbreak vulnerability

Spread the love

Apple has released version 9.3.4 of iOS for all devices that can run version 9 of the operating system. The content of the update is a patch for the vulnerability that enabled the most recent Pangu jailbreak.

In the security notes, Apple attributes the discovery of the vulnerability to the Chinese Pangu team. The vulnerability, according to Apple, concerns a vulnerability in the IOMobileFrameBuffer kernel extension, which could allow arbitrary code execution in the kernel. The vulnerability has been given the characteristic cve-2016-4654. Users can install the update, but of course the option to implement the most recent Pangu jailbreak will expire.

Team Pangu spoke at the Black Hat conference on Thursday about the development of jailbreaks since iOS 9. It also discussed the fact that the vulnerability has now been fixed by Apple. They stated that it is a heap overflow in the kernel extension mentioned by Apple. The developers found it striking that they determined that Apple must have been aware of the vulnerability before the jailbreak, as it had already fixed it in the second beta of iOS 10. Pangu declined to go into details of the vulnerability. vulnerability, which they would disclose at a later date.

You might also like