Difference between revisions of "Malformed CFF Vulnerability"

From The iPhone Wiki
Jump to: navigation, search
m (IOService to IOSurface)
m (PDF CFF Font Stack Overflow moved to Malformed CFF Vulnerability: The old name implied that the PDF parser was involved.)
(No difference)

Revision as of 19:07, 12 October 2010

This vulnerability, along with the IOSurface Kernel Exploit, was used in Star/JailbreakMe 2.0. It is a stack overflow in the handling of CFF opcodes. Contrary to popular belief, it is not a problem with the PDF parser, although the malformed font was placed in a PDF for exploitation.

Credit

comex