AT+XLOG Vulnerability

From The iPhone Wiki
Revision as of 11:36, 23 June 2009 by Oranav (talk | contribs) (New page: Used as an injection vector for the current iPhone 3G unlock payload - ultrasn0w. Currently available in all baseband versions, but it's very likely that Apple will ...)
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)
Jump to: navigation, search

Used as an injection vector for the current iPhone 3G unlock payload - ultrasn0w. Currently available in all baseband versions, but it's very likely that Apple will close this exploit in the next baseband version.

Credit

Oranav

Exploit

There is a buffer overflow in the AT+XLOG=1,"..." command, which allows unsigned code execution on the iPhone 3G baseband.

Implementation

The exploit is used in ultrasn0w.