A vulnerability has been found in iOS that uses HomeKit as an attack vector involving very long device games, a vulnerability disclosed by a security researcher due to Apple allegedly being slow to fix it.
As with its other products, Apple is keen on keeping HomeKit as secure as possible for its users. In a disclosure published on January 1, it seems that there is a bug in the smart home platform that could cause problems for its users.According to security researcher Trevor Spiniolas, if a HomeKit device name is changed to a "very long string," set at 500,000 characters in testing, iOS and iPadOS devices that loads the string can be rebooted and made unusable. Furthermore, since the name is stored in iCloud and gets updated across all other iOS devices signed into the same account, the bug can reappear repeatedly.
Read more...
from AppleInsider News https://ift.tt/3JutmBL
Read more...
from AppleInsider News https://ift.tt/3JutmBL
HomeKit bug affecting iOS disclosed by security researcher
Reviewed by Ghaniiero
on
janvier 01, 2022
Rating:
Aucun commentaire: