PT-2019-19693 · Apple · Iphone 3Gs

Axi0Mx

·

Published

2019-11-22

·

Updated

2021-07-21

·

CVE-2019-9536

CVSS v2.0

6.9

Medium

VectorAV:L/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Apple iPhone 3GS
Description The issue concerns the bootrom malloc implementation in Apple iPhone 3GS, which returns a non-NULL pointer when it is unable to allocate memory. An attacker who has physical access to the device can exploit this to install arbitrary firmware.
Recommendations For Apple iPhone 3GS, at the moment, there is no information about a newer version that contains a fix for this issue.

Exploit

Fix

Improper Handling of Exceptional Conditions

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-9536

Affected Products

Iphone 3Gs