Apple iPhone users escape bug that would have forced them to factory reset their phone

Apple iPhone users escape bug that would have forced them to factory reset their phone
Apple iPhone users didn't know it until a fix was disseminated, but a bug could have forced them to perform a factory reset had they received a particular malformed message. This was revealed by Google Project Zero (via Apple Insider), the company's security team that discovers bugs and vulnerabilities. The reason that no one heard about the bug until now is that under Project Zero, a bug is not disclosed until 90 days has expired, or a fix has been sent. In this case, Apple sent out a fix for this bug in the iOS 12.3 update. This was pushed out on May 13th and included Apple News+, AirPlay2, and a redesigned TV app.

The problem with the malformed message is that the phone is expecting a key value with a string of code, but doesn't check to make sure it is included. Because the code is not included, on the iPhone the message loads, crashes and reloads. This cycle repeats until the phone stops displaying the user interface and doesn't recognize inputs. A hard reset doesn't fix things and the phone is rendered unusable once it is unlocked. One user found that there are three ways to unbrick an affected iPhone:

  1. Wipe the device with 'Find my iPhone.'
  2. Put the device in recovery mode and update via iTunes (note that this will force an update to the latest version).
  3. Remove the SIM card and go out of Wifi range and wipe the device in the menu.
Last year, a similar issue occurred when users received an iMessage containing a black dot and tapped on it. The black dot contained thousands of strings of Unicode that bogged down the iPhone's processor causing the phone to crash. The black dot also affected Android users who received the same message on WhatsApp. Also last year, Apple had to send out an iOS update to fix a bug that caused iPhones around the world to reboot. This would occur when an iPhone user received a message containing a character from the Indian Telugu language sent over iMessage or placed in a text field.

In 2015, the "Effective Power bug" caused iPhones to crash when a specific iMessage was received. When rebooted, the Messages app would fail to work. The malicious part of the iMessage was a string of Arabic characters that could not be separated correctly in iOS. When an incoming message notification was received, the Arabic characters were too long to fit in the notification thus causing the handset to crash.

Always make sure that your iPhone is running the latest version of iOS



Even though Apple has fixed the current issue, something similar seems to pop up every so often. So make sure that your iPhone is always running the latest version of iOS and that you back up your data often. This way, if you're forced to factory reset your iPhone, all of your apps and data can be quickly loaded on the phone

FEATURED VIDEO

5 Comments

2. SPASE

Posts: 261; Member since: May 03, 2013

Too late Alan, this is old news... I sent you guys a tip for this story early this week, but no one followed up, cheers mate

4. Mike88

Posts: 438; Member since: Mar 05, 2019

No it's actually the second time they are posting this news, only in a better way this time

9. clarity

Posts: 56; Member since: Jun 19, 2017

Nah, don't run the latest iOS. Just jailbreak your phone. Much more features and you're safe from these bugs too.

10. cmdacos

Posts: 4313; Member since: Nov 01, 2016

'secure'

14. blingblingthing

Posts: 980; Member since: Oct 23, 2012

"This cycle repeats until the phone stops displaying the user interface and doesn't recognize inputs." Yet the iPhone never lags. Not even for bugs or battery gate, nope, never happened.

Latest Stories

This copy is for your personal, non-commercial use only. You can order presentation-ready copies for distribution to your colleagues, clients or customers at https://www.parsintl.com/phonearena or use the Reprints & Permissions tool that appears at the bottom of each web page. Visit https://www.parsintl.com/ for samples and additional information.