Heap-based buffer overflow: how the iPhone and iPod Touch could be hacked
The recent scuttlebutt in the iPhone and iPod Touch developer forums is that there is a buffer overflow bug in the code used to load TIFF images in Safari (libtiff). The letdown is that the stack is not executable on the devices, leading many to think this is a dead end. The heap, however, _is_ […]