It’s 2007 and we still have buffer overflows?!
I just saw this on Digg:
iPod Touch Dev Team has discovered the old malformed TIFF exploit in iPhone 1.0.2 and 1.1.1 to crash. This also applies to iPod Touch 1.1 and 1.1.1. It’s all about crafted TIFF file which will cause buffer overflow.
(User summary, not actual text.)
I mean really. It’s 2007 and we’re still having buffer overflows. You would think at this point that even if a file was malformed that the only thing that would happen is that the file would be corrupt. But no, we still have a way to do code injection. I don’t get it. I really don’t. Can’t things be sandboxed properly so that buffer overflows are nonexistant?
