Difference between revisions of "AT+XLOG Vulnerability"

From The iPhone Wiki
Jump to: navigation, search
m
(Exploit)
Line 5: Line 5:
   
 
==Exploit==
 
==Exploit==
There is a buffer overflow in the AT+XLOG=1,"..." command, which allows unsigned code execution on the [[X-Gold 608|iPhone 3G baseband]].
+
There is a buffer overflow in the AT+XLOG=1,"..." command, which allows unsigned code execution on the [[X-Gold 608]].
   
 
==Implementation==
 
==Implementation==

Revision as of 16:49, 26 June 2009

Used as an injection vector for the current iPhone 3G unlock payload - ultrasn0w. Currently available in all baseband versions, but it's very likely that Apple will close this exploit in the next baseband update.

Credit

Oranav

Exploit

There is a buffer overflow in the AT+XLOG=1,"..." command, which allows unsigned code execution on the X-Gold 608.

Implementation

The exploit is used in ultrasn0w.