Published: 2012-03-08
Last Updated: 2012-03-08 18:34:43 UTC
by Johannes Ullrich (Version: 1)
Apple's new mobile operating system, iOS 5.1, not only includes a number of new features, but also a large list of security relavant patches. Eventually, a link to the patches will be listed on Apple's security update page (

iOS fixes the latest passcode lock bypass (CVE-2012-0644). In addition, a number of Safari and Webkit issues are fixed. In addition, code execution issues are fixed in the HFS subsystem (exploitable by mounting a corrupt disk), libresolv, and VPN configuration. 

Note that the new Apple TV operating system, as well as the iTunes update add security fixes as well as new features. An update is recommended.


Johannes B. Ullrich, Ph.D.
SANS Technology Institute

