CVE-2009-2204
CVE-2009-2204
Unspecified vulnerability in the CoreTelephony component in Apple iPhone OS before 3.0.1 allows remote attackers to execute arbitrary code, obtain GPS coordinates, or enable the microphone via an SMS message that triggers memory corruption, as demonstrated by Charlie Miller at SyScan '09 Singapore.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://lists.apple.com/archives/security-announce/2009/Jul/msg00001.htmlhttp://news.cnet.com/8301-1009_3-10278472-83.htmlhttp://secunia.com/advisories/36070http://securitytracker.com/id?1022626http://support.apple.com/kb/HT3754http://www.blackhat.com/presentations/bh-usa-09/MILLER/BHUSA09-Miller-FuzzingPhone-PAPER.pdfhttp://www.osvdb.org/55687http://www.securityfocus.com/bid/35569http://www.syscan.org/Sg/program.htmlhttp://www.vupen.com/english/advisories/2009/2105