iPhoneCentral

All about the iPhone, iPod touch, and App Store from the Apple experts

  • 0 Comments
  • 0 Recommendations

Apple improves security in iPhone 2.1

Among the many improvements to the iPhone with the 2.1 software update posted on Friday are changes meant to enhance security on the device. Apple has provided details about what's changed. All of the changes affect security issues noted for iPhone 2.0 through 2.0.2 software releases. None of the problems affect iPhone software prior to 2.0.

The Application Sandbox has been updated to enforce proper access restrictions between application sandboxes. This could lead to the disclosure of sensitive information. FreeType vulnerabilities have been closed.

Changes have also been made to improve security with the iPhone's network connectivity. mDNSResponder has been updated to reduce susceptibility to DNS cache poisoning. TCP initial sequence numbers are now randomly generated, to thwart remote attackers from spoofing TCP connections.

The Passcode Lock feature is used to keep users from making accessing the iPhone without entering a multi-digit code. That feature could be thwarted thanks to an exploit involving the handling of emergency calls; that has been corrected.

WebKit on the iPhone has also been updated to address an issue associated with the handling of Cascading Style Sheet (CSS) import statements. Document reference handling has been improved to prevent this problem from occurring.

  • Recommend? 0 YES 0 NO
  • 0 Comments
  •  
  • Print

"Apple improves security in iPhone 2.1" Comments

Tip us off!

Email: iphone [at] macworld [dot] com
Vmail: 1-415-520-9761

Subscribe/RSS

Subscribe to our weekly iPhone newsletter

  • Get the latest news, reviews, and opinion about Apple's groundbreaking iPhone from the Apple experts at Macworld.

    Want more information? Be sure to check out our complete iPhone coverage.

Macworld iPod Touch & iPhone App Review Essential Collections View all »