Wednesday, October 9, 2024
HomeCVE/vulnerabilityCritical Bug:Single MMS Can Crash Message application On IOS

Critical Bug:Single MMS Can Crash Message application On IOS

Published on

A solitary instant message could be abused to impair the Messages application on any iPhone because of an as of late found bug.

The bug defect makes the Apple Message application inoperable, making it difficult to pursue instant messages or iMessages.

The defect is not kidding, the application will keep on crashing inspite of when the client closes it or reboot the gadget.

- Advertisement - EHA

Critical Bug: Single MMS Can Crash Message application On IOS

Steps to be followed:

  • Download the file here.
  • Upload it to iCloud Drive, Dropbox etc.. (just if you want to keep it).
  • Share the file to send it via Message
  • Send it to your victim.
  • Wait for the victim click on it, the Message application freeze and don’t work anymore.
  • Fix the app with this magical link

When you click, iOS want to read the text, the text in the file is very complicated for the system and cause a CPU average: the app freeze. You close the app, want to reopen but iOS want to reload the earlier message but can’t because it’s the vcf file.

The bug is like the “Successful Power” found in May 2015, when clients saw that an instant message containing a string of Arabic content would crash telephones.

Back to the present, there is an uplifting news for those clients that have gotten the malignant message.

There no less than two workarounds to expel the message from the highest point of the inbox:

To Download the Code and recommended Fix

VCF file: vincedes3.com/vincedes3.vcf

Fix link: vincedes3.com/save.html

Another fix: See the post on Twitter

Another fix 2: See the post on Twitter

Critical Bug:Single MMS Can Crash Message application On IOS

By sending yourself a message in Siri, or ask someone else to send you a message.

Once the message is received the Messages app will allow you to open the new message instead of the malicious one.

There is by all accounts an issue with some iPad where the settle does not work, you can attempt interchange settle.

Critical Bug:Single MMS Can Crash Message application On IOS
Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

Badge and CyberArk Announce Partnership to Redefine Privacy in PAM and Secrets Management

Partnership aims to help businesses eliminate vulnerable attack surfaces and provide a more streamlined...

LemonDuck Malware Exploiting SMB Vulnerabilities To Attack Windwos Servers

The attackers exploited the EternalBlue vulnerability to gain initial access to the observatory farm,...

Critical Automative 0-Day Flaws Let Attackers Gain Full Control Over Cars

Recent discoveries in the automotive cybersecurity landscape have unveiled a series of critical zero-day...

Likho Hackers Using MeshCentral For Remotely Managing Victim Systems

The Awaken Likho APT group launched a new campaign in June of 2024 with...

Free Webinar

Protect Websites & APIs from Malware Attack

Malware targeting customer-facing websites and API applications poses significant risks, including compliance violations, defacements, and even blacklisting.

Join us for an insightful webinar featuring Vivek Gopalan, VP of Products at Indusface, as he shares effective strategies for safeguarding websites and APIs against malware.

Discussion points

Scan DOM, internal links, and JavaScript libraries for hidden malware.
Detect website defacements in real time.
Protect your brand by monitoring for potential blacklisting.
Prevent malware from infiltrating your server and cloud infrastructure.

More like this

LemonDuck Malware Exploiting SMB Vulnerabilities To Attack Windwos Servers

The attackers exploited the EternalBlue vulnerability to gain initial access to the observatory farm,...

Open-Source Scanner Released to Detect CUPS Vulnerability

A new open-source scanner has been released to detect a critical vulnerability in the...

RCE Vulnerability (CVE-2024-30052) Allow Attackers To Exploit Visual Studio via Dump Files

The researcher investigated the potential security risks associated with debugging dump files in Visual...