[Boards: 3 / a / aco / adv / an / asp / b / biz / c / cgl / ck / cm / co / d / diy / e / fa / fit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mu / n / news / o / out / p / po / pol / qa / r / r9k / s / s4s / sci / soc / sp / t / tg / toy / trash / trv / tv / u / v / vg / vp / vr / w / wg / wsg / wsr / x / y ] [Home]
4chanarchives logo
Crash iOS and mac apps with a PNG
Images are sometimes not shown due to bandwidth/network limitations. Refreshing the page usually helps.

You are currently reading a thread in /g/ - Technology

Thread replies: 48
Thread images: 12
File: crasher.png (144 KB, 1184x448) Image search: [Google]
crasher.png
144 KB, 1184x448
Apparently manipulated PNG files like this one will crash applel programs.
https://www.landaire.net/blog/apple-imageio-denial-of-service/
>>
>>54230299
Clicking cause safari to refresh.

I'm on an 6th gen ipod btw
>>
File: 1448523343596.jpg (48 KB, 615x247) Image search: [Google]
1448523343596.jpg
48 KB, 615x247
Is this the applel progammers appreciation thread?
>>
can confirm, it will crash safari, I'm on a 15 inch macbook pro 2015 base model
>>
>>54230299
didn't do shit. I'm using a 13-inch 2011 MBP i5
>>
>>54231086
>copyrighted by Apple.
>>
File: image.png (49 KB, 640x1136) Image search: [Google]
image.png
49 KB, 640x1136
Crashed chrome

Weird
>>
Shit's crashing fortune, too
>>
>>54231430
>>54231445
iOS browsers and anything that handle images are just frontends of apple own engines.
You can't make your own image parser on ios.
>>
>>54230299
All it did was crash chrome
>>
>>54230299
please note the lack of babies in this thread defending apple

i'd just like to bump this post, i fucking dare you to defend your $1200 purchase when it can be killed with a fucking image
>>
File: bro.png (14 KB, 900x800) Image search: [Google]
bro.png
14 KB, 900x800
>>54230299
Kek, works fine in IE!
>>
>>54231516
hey linuxfags justify your installation that could be killed with any of the 2 commands
sudo rm -rf / --no-preserve-root

sudo chmod -Rf / 000
>>
>>54231516
>please note the lack of babies in this thread defending apple
That's because their applel toy froze up and now they're at their basement steve jobs shrine praying for his ghost to banish the evil beachball.
>>
>>54231568
>macfags
>basement dwellers
More like...oh that's weird it crashed my browser
>never go to website again.
>wait for update.
>>
>>54231568
>>54231516
Kek
>>
>>54231561
doesn't that work on OSX too?
>>
Lol it crashed safari
More like ayyfone am I right
>>
File: image.jpg (9 KB, 445x164) Image search: [Google]
image.jpg
9 KB, 445x164
No crashes on safari, a page reload is what I get.
iPhone 6s, iOS 9.2.1

Also, note that's it's fixed
>>
>>54231620
No
>>
>>54231561
Justify it?
Sure, to run those I would need to both open a terminal, manually enter those commands, press enter, and enter a fucking password

You have to click an image, or even a webpage with the image embedded

Truly a meme os
>>
Crashes the safari tab on my iphone

Good i am getting rid of this for a note 5
>>
>>54231620
Yeah
http://www.cultofmac.com/257976/bitcoin-hoax-dupes-apple-users-destroying-macs/
>>
>>54231713
This no longer works
>>
File: 1451446839406.jpg (152 KB, 1024x613) Image search: [Google]
1451446839406.jpg
152 KB, 1024x613
>>54231086
>>
>>54232801
>wtf_am_i_reading.jpg

* The Mac platform has evolved from 68K to PPC to Intel.

* Mac OS classic allowed low level OS extensions that could crash the entire OS. OS X is most definitely NOT Mac OS classic. (It's fucking UNIX NextStep.)

* Extensions were basically implemented as CPU traps, instruction op codes that m68k didn't use. Executing one would trigger a low level handler that branched to your code. As you can imagine it would be easy to fuck up the entire memory space and crash the whole computer with no survivors via this mechanism, regardless of hardware.

Now as to the PNG OP posted about...haven't tested it, but if it crashes Safari, big deal? Apple will fix the bug. You can probably find the same bug in Chrome. It's common to crash a browser with a bug in some low level data parser.

At least on OS X you can't use the crash to inject code with admin rights, and TRIGGER the crash simply by sending an email regardless of whether or not it's viewed (anyone remember the famous Windows JPEG exploit?)
>>
File: 1458913199539.png (433 KB, 577x1018) Image search: [Google]
1458913199539.png
433 KB, 577x1018
>>54233128
>Apple
>fix
>bug


lmao, pick two
>>
>>54233165
>pick two
"Apple" and "fix" I guess.
>>
File: 167978.jpg (41 KB, 379x214) Image search: [Google]
167978.jpg
41 KB, 379x214
>>54231561
>requires entering a password
vs
>displaying an image on a webpage
>>
File: 1444628602690.png (72 KB, 665x882) Image search: [Google]
1444628602690.png
72 KB, 665x882
>>54233290
Here you go.
>>
Works for Android master race :^)
>>
>>54231561
That could easily be recovered from anon.
>>
>>54230299
Doesn't crash Epiphany running on Raspberian
>>
>omg image decoding library has bugz!!!!

2005 called it wants its PSP exploit back.
>>
>>54233399
>>54233165
and the point where you show that this behaviour is incongruous with the tech community at large is...?
>>
thanks OP, reported to apple so they can fix it
>>
>>54234650
>Timeline

>Dec 16, 2015: Reported vulnerability to vendor
>Dec 17, 2015: Vendor acknowledged vulnerability
>Dec 27, 2015: Posted pic to Twitter to see what would happen
>Dec 27, 2015: Vendor said the bug was undergoing triage
>Mar 21, 2016 (91 days since diclosure): iOS 9.3 released and bug still not fixed, status update requested
>Mar 22, 2016: Vendor notified me that a fix is “in progress”
>April 22, 2016: Public disclosure

It was reported four months ago you illiterate
>>
Can ios users confirm if they are crashing upon viewing the thread?
>>
>>54234691
No, because they can't open it without crashing.

:^)
>>
>>54234691
Well once they've loaded the image it will remain on Safari, so it would crash each time you try to use Safari. Good to have a large reduction of Macfags on /g/, shitposting has drastically dropped.
>>
File: 1450859141081.png (254 KB, 477x724) Image search: [Google]
1450859141081.png
254 KB, 477x724
>>54230299
>Crash iOS and mac apps with
>>
http://arstechnica.com/apple/2013/08/rendering-bug-crashes-os-x-and-ios-apps-with-string-of-arabic-characters/
>>
http://arstechnica.com/security/2015/05/beware-of-the-text-message-that-crashes-iphones/
>>
>>54235653
We had a wireless network with the SSID as the string running on a 10$ wireless router in the library on the first day of uni.
I heard of at least four phones being affected.
>>
>>54235802
nice one sir *tips fedora*
>>
File: pngbleed.jpg (216 KB, 1334x750) Image search: [Google]
pngbleed.jpg
216 KB, 1334x750
So this?
>>
>>54235982
oh lol, cant even post it "contains an embedded file" according to the chan
>>
>>54234998
Oh thank you baby jesus! Spread this shit and block the macfags!!
Thread replies: 48
Thread images: 12

banner
banner
[Boards: 3 / a / aco / adv / an / asp / b / biz / c / cgl / ck / cm / co / d / diy / e / fa / fit / g / gd / gif / h / hc / his / hm / hr / i / ic / int / jp / k / lgbt / lit / m / mlp / mu / n / news / o / out / p / po / pol / qa / r / r9k / s / s4s / sci / soc / sp / t / tg / toy / trash / trv / tv / u / v / vg / vp / vr / w / wg / wsg / wsr / x / y] [Home]

All trademarks and copyrights on this page are owned by their respective parties. Images uploaded are the responsibility of the Poster. Comments are owned by the Poster.
If a post contains personal/copyrighted/illegal content you can contact me at [email protected] with that post and thread number and it will be removed as soon as possible.
DMCA Content Takedown via dmca.com
All images are hosted on imgur.com, send takedown notices to them.
This is a 4chan archive - all of the content originated from them. If you need IP information for a Poster - you need to contact them. This website shows only archived content.