Developer Brightiup shared details about the CVE-2021-30955 bug for iOS 15.0-15.1.1

In mid-December, Kunlun Lab security specialist Zweig ( @ realBrightiup ) promised to share details about a bug that can be used to exploit iOS and iPadOS 15.0-15.1.1.

Developer Brightiup shared details about the CVE-2021-30955 bug for iOS 15.0-15.1.1


Taking to Twitter , @realBrightiup explained that Kunlun Lab is unable to release details for two months as a matter of policy. February is coming to an end, so the specialist has already published the first data on the bug.

There are still few details, and this is partly due to the lack of “proof of concept (PoC)”, i.e. evidence that the bug can be exploited. Nevertheless, the specialist nevertheless revealed some interesting data.



According to Apple's website , bug CVE-2021-30955 allowed an application to extract arbitrary code with root privileges. Based on it, it was possible to create a jailbreak exploit. Whether this will happen in the future is too early to say.

Security specialist @ realBrightiup talked about using a bug to get read and write permissions on the root memory.

Interestingly, the CVE-2021-30955 bug appeared in iOS and iPadOS 15.0, so it is not relevant for iOS and iPadOS 14. Only versions 15.0-15.1.1 will be supported.

You can upgrade using DelayOTA to iOS or iPadOS 15.1/15.1.1 until March 12. We advise you not to rush for now and wait for further news.


About Emmanuel

This is a short description in the author block about the author. You edit it by entering text in the "Biographical Info" field in the user admin panel.

0 Comments:

Post a Comment

Your comment and facebook share will be appreciated