Apple Tambal Celah Eksploit yang digunakan oleh TaiG Jailbreak di iOS 8.4.1


Apple telah merilis iOS 8.4.1 dengan perbaikan bug dan beberapa peningkatan di Apple Music. Namun kemunculan iOS 8.4.1 bukan merupakan kabar baik bagi jailbraker. Mengapa? Apple dalam update iOS terbarunya tersebut telah menambal celah eksploit yang digunakan TaiG dalam tool jailbreaknya.

Dalam situs Supportnya, Apple telah membuat daftar nama celah yang ditambal olehnya dan didalamnya terdapat nama TaiG. Berikut 8 daftar celah eksploit yang sudah ditambal oleh Apple berhubungan dengan kemunculan jailbreak iOS 8.1.3 - iOS 8.4 oleh TaiG.

1. AppleFileConduit 
Available for : iPhone 4s and later, iPod touch (5th generation) and later, iPad 2 and later. 
Impact : A maliciously crafted afc command may allow access to protected parts of the filesystem
Description : An issue existed in the symbolic linking mechanism of afc. This issue was addressed by adding additional path checks.

CVE-ID
CVE-2015-5746 : evad3rs, TaiG Jailbreak Team

2. Air Traffic
Available for: iPhone 4s and later, iPod touch (5th generation) and later, iPad 2 and later. 
Impact : AirTraffic may have allowed access to protected parts of the filesystem
Description: A path traversal issue existed in asset handling. This was addressed with improved validation.

CVE-ID
CVE-2015-5766 : TaiG Jailbreak Team

3. Backup
Available for : iPhone 4s and later, iPod touch (5th generation) and later, iPad 2 and later. 
Impact : A malicious application may be able to create symlinks to protected regions of the disk
Description : An issue existed within the path validation logic for symlinks. This issue was addressed through improved path sanitization.

CVE-ID
CVE-2015-5752 : TaiG Jailbreak Team

4. Signing
Available for : iPhone 4s and later, iPod touch (5th generation) and later, iPad 2 and later.
Impact : A malicious application may be able to execute unsigned code.
Description : An issue existed that allowed unsigned code to be appended to signed code in a specially crafted executable file. This issue was addressed through improved code signature validation.

CVE-ID
CVE-2015-3806 : TaiG Jailbreak Team

5. Code Signing
Available for : iPhone 4s and later, iPod touch (5th generation) and later, iPad 2 and later. 
Impact : A specially crafted executable file could allow unsigned, malicious code to execute.
Description : An issue existed in the way multi-architecture executable files were evaluated that could have allowed unsigned code to be executed. This issue was addressed through improved validation of executable files.

CVE-ID
CVE-2015-3803 : TaiG Jailbreak Team

6.Code Signing
Available for : iPhone 4s and later, iPod touch (5th generation) and later, iPad 2 and later.
Impact : A local user may be able to execute unsigned code.
Description : A validation issue existed in the handling of Mach-O files. This was addressed by adding additional checks.

CVE-ID
CVE-2015-3802 : TaiG Jailbreak Team
CVE-2015-3805 : TaiG Jailbreak Team

7. IOHIDFamily
Available for : iPhone 4s and later, iPod touch (5th generation) and later, iPad 2 and later.
Impact : A local user may be able to execute arbitrary code with system privileges.
Description : A buffer overflow issue existed in IOHIDFamily. This issue was addressed through improved memory handling.

CVE-ID
CVE-2015-5774 : TaiG Jailbreak Team

Munculnya daftar nama penambalan celah eksploit yang digunakan TaiG, hal tersebut juga berlaku untuk PP Jailbreak yang sama-sama mempunyai tool jailbreak iOS 8.1.3 - iOS 8.4. Jadi, mulai sekarang kalian tidak dapat menggunakan tool dari TaiG atau PP Jailbreak untuk melakukan jailbreak perangkat iOS 8.1.3 - iOS 8.4.

Jadi, apabila kalian sudah melakukan upgrade ke iOS 8.4.1 disarankan untuk downgrade kembali ke iOS 8.4 sebelum Apple menghentikan peredaran iOS 8.4. Tutorial install iOS 8.4 dapat kalian lihat di artikel berikut  Cara Install Update iOS 8.4 untuk iPhone, iPad atau iPod Touch.

Punya pertanyaan? Sampaikan di kolom komentar yuk!

:)
:(
hihi
:-)
:D
=D
:-d
;(
;-(
@-)
:P
:o
:>)
(o)
:p
(p)
:-s
(m)
8-)
:-t
:-b
b-(
:-#
=p~
x-)
(k)