Affiliate Disclosure
If you buy through our links, we may get a commission. Read our ethics policy.

Apple's first iPhone software update addresses security, bugs

Apple on Tuesday evening addressed concerns about potentially dangerous security holes in the mobile version of its Safari web browser with the first ever software update to its new iPhone handset.

Targeting vulnerabilities that could be exploited through malicious websites, version 1.0.1 (build 1C25) of the handset's software updates Safari's JavaScript handling to prevent cross-site scripting and a buffer overflow in the Perl code library.

The latter scripting flaw was heavily publicized last week when consultants from Independent Security Evaluators used it to effectively hijack the phone's core functions.

Also addressed by software patch were three separate issues within the company's WebCore and WebKit platforms that form the backbone of Safari. Two of the fixes guard against false XML requests and frame rendering glitches that could be used to control the phone or crash the browser through memory errors.

Like recent iPod updates, the iPhone fix is downloadable solely through iTunes and can be installed the next time the phone is docked or detected by the jukebox software.

In a brief set of release notes, Apple said the iPhone software update also includes several "bug fixes." The company recommends that users install the patch "immediately."

25 Comments

rot'napple 18 Years · 1839 comments

Quote:
Originally Posted by AppleInsider

Apple has tackled concerns about potentially dangerous security holes in its mobile version of Safari with the first revision to the iPhone's code.

Tuesday marked the release of Apple's first ever fix for the iPhone since the product's June 29th release and mends vulnerabilities relating to visiting malicious websites.

First Post?! - Maybe...

Any word on whether this patch just deals with Safari? What about the little idiosyncrasies of the other apps on the phone and the wishlists that have been reported on or dreamed about. What is it's status, anyone?

donlphi 19 Years · 214 comments

Anybody else have to restore their iPhone in order to install the update?

It killed my ringtones. As soon as it's done installing, I'll let you know if I can use Jailbreak again.

christorogers 19 Years · 7 comments

Quote:
Originally Posted by donlphi

Anybody else have to restore their iPhone in order to install the update?

It killed my ringtones. As soon as it's done installing, I'll let you know if I can use Jailbreak again.

Yup. It gave me an error when trying to update normally when it was extracting or verifying, and now I'm restoring my iPhone as I type. It scared me at first because it was giving an unknown error when trying to restore, but it's working now...

sandau 20 Years · 1123 comments

flawless install.

and 1.0.1 1C25 is so much snappier than 1.0 (had to say it!!)

lol.

no new functionality but bug fixes are good before Aug 2!

I really hope a lot of cool stuff comes with Leopard for the Apple TV and iPhone.