A major iOS/OS X vulnerability comparable to Android Stagefright
forbes.com
forbes.com
Tyler Bohan's original disclosure writeup (with some technial details) is here: http://www.talosintelligence.com/reports/TALOS-2016-0171/
I remember one of the jailbreaks was loading a PNG way back when. This happened before.
The library itself is widely used across various operating systems and software so this is a reminder to please make sure you keep both your OS and your applications up to date. http://xmlsoft.org
Plus "prise" not "prize". I see an increasing number of articles where the writers appear to just use what they think is right. Just yesterday, "tow the line". facepalm
[0] http://www.oed.com/view/Entry/151652?rskey=W7yb3q&result=6#e...
> The bugs uncovered by Bohan work across all widely-used Apple operating systems, however, including Mac OS X, tvOS and watchOS. Indeed, Bohan noted that Mac OS X doesn’t have sandboxing, giving an attacker remote access to the PC with the victim’s passwords. That potentially makes it a more severe threat to owners of Apple’s PCs, as a simple email could prize Macs open.
Sounds like it could be pretty bad.
[1]: https://support.apple.com/en-us/HT206902 [2]: http://www.talosintelligence.com/reports/TALOS-2016-0171/