PDF Exploit Patched in iOS 4.0.2

This time last week, Apple released the second revision to its iOS4 mobile operating system. This incremental update is focused entirely on patching a security vulnerability associated with Safari’s handling of PDF files. Under the previous iterations of the OS, a malicious PDF file could break through security by exploiting and subsequently crashing the Compact Font Format Handler in Safari. Introduced alongside comex’s fairly innocuous web based “JailbreakMe” exploit, this vulnerability has raised several security concerns. Though the jailbreak is legitimate, the same PDF exploit easily opens the gateway to malicious attacks which could put a user’s data and hardware at risk. Though no such attacks have been reported, a user would merely have to open a PDF to put themselves at risk.

Sensing the potential danger, and attempting to maintain their grasp over unlocked phones, Apple was quick to roll out an update. Though this update fixes the Safari security vulnerability, it also disables any “extra” features users may have enabled on their devices. While the update weighs in at a sizable 500MB, it addresses no other issues besides the Safari exploit. Users experiencing other issues under iOS4 will unfortunately have to wait until iOS 4.1 before their problems are further addressed.

Releasing a fix for iPad users as well, Apple has updated the iPad’s OS to version 3.2.2. Both updates can be easily downloaded through iTunes. Upon syncing your device, you should be automatically prompted with a message alerting you to the update. As always, we recommend backing up your device before performing a software update.

Similar Posts

  • GarageBand '11 New Features Overview

    GarageBand ’11 was released today at Apple’s Back to the Mac press conference, as part of the new iLife ’11 multimedia productivity suite….

  • Apple Mixes Up the iPod shuffle!

    Combining elements from the 2nd and 3rd generations of Apple’s most diminutive iPod, the new iPod shuffle is the best of both worlds….

  • Safari 5.0.1: Extensions for Everyone!

    Apple has released an update to its popular Safari browser. This update, which puts the browser at version 5.0.1, enables Safari Extensions for…

  • iTunes Movie Store!

    Now you can buy over 75 movies from the iTunes Music store. Disney, Pixar, Touchstone, Miramax (all owned by Disney) have signed up….

  • Apple Xserve to be Discontinued

    In a controversial move, Apple last Friday, announced it will be discontinuing the Xserve early next year. First released in 2002, the Xserve…