Go Back   iPhone, iPad, iPod Forums at iMore.com  > iOS, iCloud, and iTunes Forums > iTunes and iTunes Store Forum

Reply
 
LinkBack Thread Tools Display Modes
    Thread Author   #1 (permalink)  
Old 11-20-2008, 10:48 PM
Moderator
It's: Stock
 
Location: Miami
Join Date: Aug 2008
Posts: 1,303
Likes received: 0
Thanked 1 Time in 1 Post
Arrow iTunes 8.0.2 and 2.2 Firmware out NOW

Seems like every time before a firmware comes out a new iTunes is a couple days before.
__________________
[ JUSTIN ]
[ FOLLOW JUST ME ON TWITTER FOR RANDOM AND TECH RELATED STUFF ] [ @justin_horn ]
[ FOLLOW MY BLOG WHEN WILL APPLE ON TWITTER ] [ @whenwillapple ]
Reply With Quote Tip this Post
  #2 (permalink)  
Old 11-20-2008, 11:10 PM
Administrator
Carrier: AT&T
Devices: iPhone 4S/Galaxy Nexus UL
It's: Stock
iOS Version: 5.0.1
 
Location: In a Apple world...
Join Date: Mar 2005
Posts: 6,495
Likes received: 115
Thanked 182 Times in 100 Posts
Default

Well if the rumors are true from a few weeks back, tomorrow would be the day.

iPhone 2.2 + Security Patch to Hit Tomorrow?! | The iPhone Blog
__________________
iMore Forum Guidelines
Game Center = J Sikora
Reply With Quote Tip this Post
    Thread Author   #3 (permalink)  
Old 11-21-2008, 12:45 AM
Moderator
It's: Stock
 
Location: Miami
Join Date: Aug 2008
Posts: 1,303
Likes received: 0
Thanked 1 Time in 1 Post
Default

It's out now!
__________________
[ JUSTIN ]
[ FOLLOW JUST ME ON TWITTER FOR RANDOM AND TECH RELATED STUFF ] [ @justin_horn ]
[ FOLLOW MY BLOG WHEN WILL APPLE ON TWITTER ] [ @whenwillapple ]
Reply With Quote Tip this Post
  #4 (permalink)  
Old 11-21-2008, 12:46 AM
Administrator
Carrier: AT&T
Devices: iPhone 4S/Galaxy Nexus UL
It's: Stock
iOS Version: 5.0.1
 
Location: In a Apple world...
Join Date: Mar 2005
Posts: 6,495
Likes received: 115
Thanked 182 Times in 100 Posts
Default

Already downloaded...

*Tried waking Rene up with a ton of emails but he must be a heavy sleeper... he missed all the fun last night.
Attached Images
File Type: png Picture 3.png (123.4 KB, 22 views)
__________________
iMore Forum Guidelines
Game Center = J Sikora

Last edited by Jeremy Sikora; 11-21-2008 at 01:33 PM.
Reply With Quote Tip this Post
    Thread Author   #5 (permalink)  
Old 11-21-2008, 01:43 AM
Moderator
It's: Stock
 
Location: Miami
Join Date: Aug 2008
Posts: 1,303
Likes received: 0
Thanked 1 Time in 1 Post
Default

what do you think? Seems like the rumors covered everything.
__________________
[ JUSTIN ]
[ FOLLOW JUST ME ON TWITTER FOR RANDOM AND TECH RELATED STUFF ] [ @justin_horn ]
[ FOLLOW MY BLOG WHEN WILL APPLE ON TWITTER ] [ @whenwillapple ]
Reply With Quote Tip this Post
  #6 (permalink)  
Old 11-21-2008, 01:44 AM
Administrator
Carrier: AT&T
Devices: iPhone 4S/Galaxy Nexus UL
It's: Stock
iOS Version: 5.0.1
 
Location: In a Apple world...
Join Date: Mar 2005
Posts: 6,495
Likes received: 115
Thanked 182 Times in 100 Posts
Default

Safari is SO much better... very stable. Here is a full list of bug fixes.

iPhone OS 2.2 and iPhone OS for iPod touch 2.2

*

CoreGraphics

CVE-ID: CVE-2008-2321

Available for: iPhone OS 1.0 through 2.1, iPhone OS for iPod touch 1.1 through 2.1

Impact: Visiting a maliciously crafted website may lead to an unexpected application termination or arbitrary code execution

Description: CoreGraphics contains memory corruption issues in the processing of arguments. Passing untrusted input to CoreGraphics via an application, such as a web browser, may lead to an unexpected application termination or arbitrary code execution. This update addresses the issue through improved bounds checking. Credit to Michal Zalewski of Google for reporting this issue.

*

ImageIO

CVE-ID: CVE-2008-2327

Available for: iPhone OS 1.0 through 2.1, iPhone OS for iPod touch 1.1 through 2.1

Impact: Viewing a maliciously crafted TIFF image may lead to an unexpected application termination or arbitrary code execution

Description: Multiple uninitialized memory access issues exist in libTIFF's handling of LZW-encoded TIFF images. Viewing a maliciously crafted TIFF image may lead to an unexpected application termination or arbitrary code execution. This update addresses the issue through proper memory initialization and additional validation of TIFF images.

*

ImageIO

CVE-ID: CVE-2008-1586

Available for: iPhone OS 1.0 through 2.1, iPhone OS for iPod touch 1.1 through 2.1

Impact: Viewing a maliciously crafted TIFF image may lead to an unexpected device reset

Description: A memory exhaustion issue exists in the handling of TIFF images. Viewing a maliciously crafted TIFF image may lead to an unexpected device reset. This update addresses the issue by limiting the amount of memory allocated to open a TIFF image. Credit to Sergio 'shadown' Alvarez of n.runs AG for reporting this issue.

*

Networking

CVE-ID: CVE-2008-4227

Available for: iPhone OS 1.0 through 2.1, iPhone OS for iPod touch 1.1 through 2.1

Impact: The encryption level for PPTP VPN connections may be lower than expected

Description: The encryption level for PPTP VPN connections may revert to a previous lower setting. This update addresses the issue by properly setting the encryption preferences. Credit to Stephen Butler of the University of Illinois of Urbana-Champaign for reporting this issue.

*

Office Viewer

CVE-ID: CVE-2008-4211

Available for: iPhone OS 1.0 through 2.1, iPhone OS for iPod touch 1.1 through 2.1

Impact: Viewing a maliciously crafted Microsoft Excel file may lead to an unexpected application termination or arbitrary code execution

Description: A signedness issue in Office Viewer's handling of columns in Microsoft Excel files may result in an out-of-bounds memory access. Viewing a maliciously crafted Microsoft Excel file may lead to an unexpected application termination or arbitrary code execution. This update addresses the issue by ensuring that the affected index values are not negative. Credit: Apple.

*

Passcode Lock

CVE-ID: CVE-2008-4228

Available for: iPhone OS 1.0 through 2.1, iPhone OS for iPod touch 1.1 through 2.1

Impact: Emergency calls are not restricted to emergency numbers

Description: iPhone provides the ability to make an emergency call when locked. Currently, an emergency call may be placed to any number. A person with physical access to an iPhone may take advantage of this feature to place arbitrary calls which are charged to the iPhone owner. This update addresses the issue by restricting emergency calls to a limited set of phone numbers.

*

Passcode Lock

CVE-ID: CVE-2008-4229

Available for: iPhone OS 1.0 through 2.1, iPhone OS for iPod touch 1.1 through 2.1

Impact: Restoring a device from backup may not re-enable the Passcode Lock

Description: The Passcode Lock feature is designed to prevent applications from being launched unless the correct passcode is entered. A race condition in the handling of device settings may cause the Passcode Lock to be removed when the device is restored from backup. This may allow a person with physical access to the device to launch applications without the passcode. This update addresses the issue by improving the system's ability to recognize missing preferences. This issue does not affect systems prior to iPhone OS 2.0 or iPhone OS for iPod touch 2.0. Credit to Nolen Scaife for reporting this issue.

*

Passcode Lock

CVE-ID: CVE-2008-4230

Available for: iPhone OS 1.0 through 2.1, iPhone OS for iPod touch 1.1 through 2.1

Impact: Short Message Service (SMS) messages may be revealed before the passcode is entered

Description: If an SMS message arrives while the emergency call screen is visible, the entire SMS message is displayed, even if the "Show SMS Preview" preference was set to "OFF". This update addresses the issue by, in this situation, displaying only a notification that a SMS message has arrived, and not its content.

*

Safari

CVE-ID: CVE-2008-4231

Available for: iPhone OS 1.0 through 2.1, iPhone OS for iPod touch 1.1 through 2.1

Impact: Visiting a maliciously crafted website may lead to an unexpected application termination or arbitrary code execution

Description: A memory corruption issue exists in the handling of HTML table elements. Visiting a maliciously crafted website may lead to an unexpected application termination or arbitrary code execution. This update addresses the issue through improved handling of HTML table elements. Credit to Haifei Li of Fortinet's FortiGuard Global Security Research Team for reporting this issue.

*

Safari

CVE-ID: CVE-2008-4232

Available for: iPhone OS 1.0 through 2.1, iPhone OS for iPod touch 1.1 through 2.1

Impact: Websites with embedded iframe elements may be vulnerable to user interface spoofing

Description: Safari allows an iframe element to display content outside its boundaries, which may lead to user interface spoofing. This update addresses the issue by not allowing iframe elements to display content outside their boundaries. This issue does not affect systems prior to iPhone OS 2.0 or iPhone OS for iPod touch 2.0. Credit to John Resig of Mozilla Corporation for reporting this issue.

*

Safari
CVE-ID: CVE-2008-4233

Available for: iPhone OS 1.0 through 2.1, iPhone OS for iPod touch 1.1 through 2.1

Impact: Visiting a maliciously crafted website may initiate a phone call without user interaction

Description: If an application is launched via Safari while a call approval dialog is shown, the call will be placed. This may allow a maliciously crafted website to initiate a phone call without user interaction. Additionally, under certain circumstances it may be possible for a maliciously crafted website to block the user's ability to cancel dialing for a short period of time. This update addresses the issue by properly dismissing Safari's call approval dialog when an application is being launched via Safari. Credit to Collin Mulliner of Fraunhofer SIT for reporting this issue.

*

Webkit

CVE-ID: CVE-2008-3644

Available for: iPhone OS 1.0 through 2.1, iPhone OS for iPod touch 1.1 through 2.1

Impact: Sensitive information may be disclosed to a person with physical access to an unlocked device

Description: Disabling autocomplete on a form field may not prevent the data in the field from being stored in the browser page cache. This may lead to the disclosure of sensitive information to a person with physical access to an unlocked device. This update addresses the issue by properly clearing the form data. Credit to an anonymous researcher for reporting this issue.
__________________
iMore Forum Guidelines
Game Center = J Sikora
Reply With Quote Tip this Post
  #7 (permalink)  
Old 11-21-2008, 02:33 AM
MrP MrP is offline
iPhone Intermediate
 
Join Date: Aug 2008
Posts: 108
Likes received: 1
Thanked 2 Times in 2 Posts
Default 2.2 is up!!!!!!!!

hoorah! If you find any extra goodies post em!
__________________
MrP
Twitter- paulkehler
Reply With Quote Tip this Post
  #8 (permalink)  
Old 11-21-2008, 09:36 AM
iPhone Intermediate
 
Join Date: May 2008
Posts: 441
Likes received: 1
Thanked 0 Times in 0 Posts
Default

I love if you're on a different homepage and hit the home button it brings you back to the first page of apps.
__________________
Blogging
Reply With Quote Tip this Post
  #9 (permalink)  
Old 11-21-2008, 10:32 AM
TiPb Forum Staff
 
Location: Chicago, IL
Join Date: Jul 2008
Posts: 1,891
Likes received: 1
Thanked 3 Times in 3 Posts
Send a message via AIM to jamesus Send a message via Yahoo to jamesus
Default

Any word from the Dev Team?
__________________
http://twitter.com/jamesus

If I have helped you, don't forget to tip the scales!
Reply With Quote Tip this Post
  #10 (permalink)  
Old 11-21-2008, 10:51 AM
iPhone Newbie
 
Join Date: Jun 2008
Posts: 41
Likes received: 0
Thanked 0 Times in 0 Posts
Default

Did you apply the update to your jailbroken phone, or do you have a non-jailbroken one handy as well?
Reply With Quote Tip this Post
 

Welcome to the iMore Forums!

You've found the best place to discuss, learn, and chat about the iPhone, iPad, and iPod Touch!

Register now

Registering will remove this sidebar, give you the ability to post, send messages, vote in polls, enter contests, and much more!


All times are GMT -4. The time now is 09:45 AM.



Content Relevant URLs by vBSEO 3.6.0