Security Flaw Shows SMSs In Emergency-Only Mode

Yet another security flaw in the iPhone's software had been found, and while it's probably not particularly harmful to the majority of users, it is pretty interesting. Karl Kraft posted the exploit on his blog, but he wasn't the one to uncover it. No, despite his skills with a computer and knowledge of the software, he didn't find it. Instead he says it was found by his 12-year-old son.

The flaw is fairly basic. When the iPhone is locked using a passcode in emergency call only mode and with text message previews disabled, the iPhone will still show incoming text messages.

In these circumstances the iPhone should just show a "New Text Message" preview window, but instead it shows as much of the message as will fit in the preview window and the name or number of the sender.

While this isn't nearly as big an issue as many of the exploits we've seen, it would make it possible for someone else to see possibly private information sent to you.

You can get more details on the exploit and some screenshots at his blog, KarlKraft.com.

[via Ars Technica]


this is not really an issue

why does age matter when it come to who finds it? just because he is 12 means absolutely nothing. he didn't find the flaw he just saw it! big difference. it dont take a computer degree to find user level mistakes on software, just using it. so please dont think of the 12 year old as a genius or anything.

Quote:
Originally Posted by madscientest View Post
why does age matter when it come to who finds it? just because he is 12 means absolutely nothing. he didn't find the flaw he just saw it! big difference. it dont take a computer degree to find user level mistakes on software, just using it. so please dont think of the 12 year old as a genius or anything.
Ogenius 12-year-old then here:

http://blog.wired.com/geekdad/2008/0...npu=1&mbid=yhp

Quote:
Originally Posted by madscientest View Post
why does age matter when it come to who finds it? just because he is 12 means absolutely nothing. he didn't find the flaw he just saw it! big difference. it dont take a computer degree to find user level mistakes on software, just using it. so please dont think of the 12 year old as a genius or anything.
I have a question, why are you making it sound like that was the focus of the article when clearly it wasn't? It was merely a side point or something that is less that a side point. So how about you stop leaving obnoxious comments. No wants wants to come on to a nice, friendly site like this one have to read comments left by jerks such as yourself. ...Isn't that what youtube is for....

Thanks

Quote:
Originally Posted by madscientest View Post
why does age matter when it come to who finds it? just because he is 12 means absolutely nothing. he didn't find the flaw he just saw it! big difference. it dont take a computer degree to find user level mistakes on software, just using it. so please dont think of the 12 year old as a genius or anything.
Chill my ninja
its all good
it was just a point and nothing else =P
trial and error, nothing more
everyone is entitled to an opinion