Pod2g has announced the discovery of 2 new vulnerabilities in his quest to jailbreak the iPhone.
News: a productive week-end. Found 2 big vulnerabilities. 1 kernel land and 1 root land.
Too bad I have to be secret again…
Last week pod2g noted that a jailbreak of iOS 5.1 would take at least a month to complete. We’ll post more information about how these new vulnerabilities will affect that schedule as soon as we hear more.
If the kernel land vulnerability is exploitable this could provide a jailbreak for the device no matter the firmware.
Now we have some estimations regarding the release of the iOS 5.1 untethered jailbreak. Pod2g noted that it is at least a month away.
ETA for 5.1 JB: no clue! We’re going to set pieces of the puzzle together this week. We could have issues… Could be 1 month maybe 2…
I know 1 month seems long, but it’s short to work on a project like this when it’s a hobby and you’ve other things to do as well.
Last week, pod2g reported that the Chronic Dev-Team has all the exploits required to release an untetheredjailbreak of iOS 5.1 for all devices, including iPad 3, iPad 2 and iPhone 4S. However it would take some time to put it together into a useable release.
Pod2g has bypassed ASLR at bootup, making progress towards the public release of an iOS 5.1jailbreak. ASLR is a security method that randomly arranges important data areas. This is one more step toward untethered iOS 5.1 jailbreak for all devices including iPhone 4S, iPad 2 and new iPad 3.
ASLR seems bypassed! Weird machines FTW. Time to ROP the payload.
Earlier this week pod2g revealed that the Chronic Dev-Team now has all the exploits required to release a userland jailbreak of iOS 5.1. It takes time to put them together in a public ready tool.
Version 0.9.10b7 of redsn0w adds a collection of useful features: It finally implements the corona-A5 jailbreak for iPhone4S and iPad2 devices still at 5.0.1. It can also re-install that jailbreak for those who accidentally uninstalled the untether. When stitching an IPSW, it can now grab your blobs directly from Cydia. It now shows a lot more info about your device (for instance, whether your iPhone3G has the vulnerable baseband boot loader, or whether your iPhone3GS has the old exploitable bootrom. (And the next new feature to be added will be built-in restore support, to provide an alternative to iTunes restores.)
Previously you needed to use Absinthe to jailbreak the iPhone 4S and iPad 2.
Famous hacker pod2g has announced that the Chronic Dev-Team now has all the exploits required to release a userland jailbreak for iOS 5.1.
News: we have all exploits required to do a new jailbreak. I’m working on bypassing ASLR at bootup.
Last month Pod2g said that the team only had a few pieces of a userland jailbreak. Now that the team has them all, it will still take some time to put them together in a public ready tool.
Since this is a userland jailbreak, it will be the first publicly available jailbreak of the iPad 3. I0n1c has demonstrated a jailbreak of the new device, however, he’s said he will not release his jailbreak to the public.