axi0mX/alloc8

axi0mX/alloc8

Releases0
Stars387
Write-up for alloc8 untethered bootrom exploit for iPhone 3GS

CVE History

CVEPublishedCVSS v3CVSS v2
6.1 MEDIUM6.9 MEDIUM

Apple iPhone 3GS bootrom malloc implementation returns a non-NULL pointer when unable to allocate memory, aka 'alloc8'. An attacker with physical access to the device can install arbitrary firmware.