Buy Now


MobileNewz

November 2, 2012

Four good reasons to upgrade to Apple iOS 6.0.1

More articles by »
Written by: Rudy Stebih
2012-11-02 08.46.51

If you have an Apple device that is capable of running iOS 6, you might have resisted upgrading it after hearing people complain about Apple’s new mapping application.

But now is the time to grab it for security reasons: iOS 6 patched a whopping 197 CVE-numbered vulnerabilities in 41 system components, broken down as follows:

  • 6 security bypasses
  • 1 denial of service (DoS) problem
  • 1 privilege escalation
  • 15 data leakage issues
  • 11 remote code execution (RCE) holes
  • 7 spoofing flaws

 

Now, with the release of iOS 6.0.1, there are four more reasons to get onto iOS 6 if you’re still one of the holdouts.

 

Bugs fixed include:

  • A kernel data leakage issue, by means of which the kernel could be persuaded to reveal information about which code was at what address. This might not sound like much, but it subverts Address Space Layout Randomisation (ASLR).
If all you can do with an vulnerability is make the CPU to jump to a memory address, you need to know in advance what address to choose. Otherwise, your exploit will probably just crash the device, not take it over. ASLR is deliberately intended to make it hard for you to know where to go, thus helping to turn RCE exploits (crash and keep control) into DoSes (crash and burn out).
  • A Passcode bypass, potentially allowing your Passbook application to be accessed even after you locked your device.
Since Passbook can store coupons, loyalty programme details and even airline boarding cards, having your Passbook unlocked even when your device is locked presents a rather obvious personal security risk.
  • Two RCE flaws in WebKit, the core of any web browsing app on any iDevice.
One of these bugs can be triggered by deliberately-dodgy Javascript; the other by a craftily-tweaked SVG (scalable vector graphics) file. These sorts of vulnerability are highly regarded by cybercrooks, as they can be used for drive-by infections. That’s where just visiting a page can trick your browser into running malware, without waiting for you to click through any security warnings.

 

This update also contains the following improvements and bug fixes, including:

  • Fixes a bug that prevents iPhone 5 from installing software updates wirelessly over the air
  • Fixes a bug where horizontal lines may be displayed across the keyboard
  • Fixes an issue that could cause camera flash to not go off
  • Improves reliability of iPhone 5 and iPod touch (5th generation) when connected to encrypted WPA2 Wi-Fi networks
  • Resolves an issue that prevents iPhone from using the cellular network in some instances
  • Consolidated the Use Cellular Data switch for iTunes Match
  • Fixes a Passcode Lock bug which sometimes allowed access to Passbook pass details from lock screen
  • Fixes a bug affecting Exchange meetings
  • The update is available from iTunes or OTA.


Did you enjoy this article? If so, we’d love to hear your thoughts in the comments below. It would be great if you subscribed to our RSS feed or signed up for email updates to get more goodness. There’s lots more where this came from!


About the Author

Rudy Stebih
Rudy is Founder and Creative Director for both MobileAppzTV and HelpDeskTV (www.helpdesktv.ca). Rudy does everything end to end. From script writing to shooting to voice recording and finally editing. A geek from the very beginning, I believe in adopting technology early and am constantly on the look out for digital evolution.




 
 

 
Netflix_Web_Logo

Netflix Now Has Over 30 Million Members Globally

Los Gatos, Calif., October 25, 2012  – Netflix Inc. (NASDAQ: NFLX), the world’s leading Internet subscription service for enjoying TV shows and movies, now has more than 30 million members globally, including over 25 milli...
by Rudy Stebih
0

 
 
rara_logo

rara.com music streaming apps come to iPhone, iPad and Windows 8 in 27 countries

British based music company rara.com launch music streaming apps for Windows 8, iPhone, iPad and iPod Touch with updated rara.com Android app and web service 7 new countries announced today; Brazil, Mexico, Hong Kong, Taiwan, M...
by Rudy Stebih
0

 
 
Netflix_Web_Logo

Now On Netflix In Canada: Critically-Acclaimed TV Series From Radio-Canada

TORONTO, Oct. 1, 2012 /CNW/ – Netflix, Inc. and Radio-Canada today announced a multi-year licensing agreement to bring a variety of popular and critically-acclaimed French Canadian series to Netflix members in Canada. Sta...
by Rudy Stebih
0

 

 
Netflix_Web_Logo

Only On Netflix: New Ricky Gervais Series “Derek” Available To Watch Instantly In 2013

“Derek,” the latest series from award winning comedian and actor Ricky Gervais will be coming exclusively next year to Netflix in the United States, Canada, Latin America and Scandinavia. The series will be available to Net...
by Rudy Stebih
0

 
     
    Netflix_Web_Logo

    New Netflix Experience on Android Phones

    The wait is over. Today, Netflix announce the release of a completely new Netflix experience for Android-powered phones. More and more of you use Netflix on mobile devices every day. Millions of Netflix members already use the...
    by Rudy Stebih
    0