PT-2019-19693 · Apple · Iphone 3Gs
Axi0Mx
·
Published
2019-11-22
·
Updated
2021-07-21
·
CVE-2019-9536
CVSS v2.0
6.9
Medium
| Vector | AV:L/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Apple iPhone 3GS
Description
The issue concerns the bootrom malloc implementation in Apple iPhone 3GS, which returns a non-NULL pointer when it is unable to allocate memory. An attacker who has physical access to the device can exploit this to install arbitrary firmware.
Recommendations
For Apple iPhone 3GS, at the moment, there is no information about a newer version that contains a fix for this issue.
Exploit
Fix
Improper Handling of Exceptional Conditions
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Iphone 3Gs