Achọtara adịghị ike na bootrom nke ngwaọrụ Apple niile nwere ibe si A5 ruo A11

Onye nyocha axi0mX hụrụ a vulnerability na bootrom loader nke Apple ngwaọrụ, nke na-arụ ọrụ na nnọọ mbụ ogbo nke buut, na mgbe ahụ na-enyefe akara na iBoot. A na-akpọ adịghị ike ahụ checkm8 na-enye gị ohere ịnweta njikwa zuru oke na ngwaọrụ ahụ. Enwere ike iji nrigbu ahụ ebipụtara iji gafere nkwenye firmware (Jailbreak), hazie booting okpukpu abụọ nke OS ndị ọzọ yana ụdị iOS dị iche iche.

Nsogbu a bụ ihe a ma ama n'ihi na Bootrom dị na ebe nchekwa NAND na-agụ naanị, nke na-adịghị ekwe ka idozi nsogbu ahụ na ngwaọrụ ndị ewepụtarala (enwere ike idozi adịghị ike na batrị ọhụrụ nke ngwaọrụ). Nsogbu a na-emetụta A5 site na A11 SoC nke ejiri na ngwaahịa arụpụtara n'etiti 2011 na 2017, sitere na iPhone 4S ruo ụdị iPhone 8 na X.

Agbanyelarị ụdị koodu izizi maka iji adịghị ike ahụ n'ime ngwa ngwa (GPLv3) mepere emepe. ipwnfu, emebere iji wepu njikọ na Apple firmware. Ihe eji eme ihe ugbu a bụ naanị ọrụ nke ịmepụta ihe mkpofu SecureROM, igodo decrypting maka iOS firmware, na inye JTAG aka. Ntọhapụ nke iOS ọhụrụ akpaghị aka zuru oke ga-ekwe omume, mana emebeghị ya ka ọ na-achọkwu ọrụ. Ugbu a, a na-emegharị nrigbu ahụ maka SoC s5l8947x, s5l8950x, s5l8955x, s5l8960x, t8002, t8004, t8010, t8011 na t8015b, na n'ọdịnihu, a ga-agbasawanye ya na nkwado maka 5x8940s. 5x, s8942l5 8945x, t5, t8747, s7000, s7001, s7002, s8000 na t8001.

isi: opennet.ru

Tinye a comment