module

Apple iOS MobileSafari LibTIFF Buffer Overflow

Disclosed
Aug 1, 2006
Created
May 30, 2018

Description

This module exploits a buffer overflow in the version of
libtiff shipped with firmware versions 1.00, 1.01, 1.02, and
1.1.1 of the Apple iPhone. iPhones which have not had the BSD
tools installed will need to use a special payload.

Authors

hdm x@hdm.io
kf kf_list@digitalmunition.com

Platform

OSX

Architectures

armle

Module Options

To display the available options, load the module within the Metasploit console and run the commands 'show options' or 'show advanced':


msf > use exploit/apple_ios/browser/safari_libtiff
msf exploit(safari_libtiff) > show targets
...targets...
msf exploit(safari_libtiff) > set TARGET < target-id >
msf exploit(safari_libtiff) > show options
...show and set options...
msf exploit(safari_libtiff) > exploit

Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.