How to Fix iPhone PDF Security Exploit: PDF Patch via Cydia

Yesterday Apple released iOS 4.0.2 to address the large PDF security exploit that allowed users to jailbreak their iPhones via JailbreakMe.com. If you installed 4.0.2, the exploit was fixed.

However, Apple left out iPhone 2g and iPod Touch (first gen) users. What about them? What about people who didn’t install this to preserve their jailbreak? The way to fix this exploit is by installing PDF Patch via Cydia.

The iPhone Dev Team explains the hard work of @saurik to create this fix:

On Wednesday, Apple (finally) released firmware 4.0.2, which patches the very large security holes exploited by @comex in the 2nd incarnation of jailbreakme.com. The only problem is they outright abandoned iPhone2G and iPod Touch 1G users! Even though Apple acknowledges in their security update the severity of these holes, they left iPhone2G and ipt1G owners high and dry — completely vulnerable to truly malicious variants of jailbreakme (these variants aren’t out yet, but they’re sure to come!).

Luckily for Apple, the Jailbreak community isn’t so callous. @saurik has been burning the midnight oil coding a Cydia package that will fix the holes for all devices and all firmware versions (even going back to version 2.x!

I haven’t updated to iOS 4.0.2 yet as I want to preserve my jailbreak. Therefore, I have just installed PDF Patch via Cydia–you should too!

Want to see more of our stories on Google?

Add iPhone in Canada as a Preferred Source on Google

P.S. Want to keep this site truly independent? Support us by buying us a beer, treating us to a coffee, or shopping through Amazon here. Links in this post are affiliate links, so we earn a tiny commission at no charge to you. Thanks for supporting independent Canadian media!

Subscribe
Notify of
guest
15 Comments
Oldest
Newest Most Voted
roadcarver
roadcarver
15 years ago

I've got one word to say…. “Awesome!”.

Gary
15 years ago

Agree! 🙂

roadcarver
roadcarver
15 years ago

I've applied the patch so far so good.

Wuju
Wuju
15 years ago

Just did mine. Seems ok. Anyone know if and when this will be available for the iPad too? Thanks.

iPhone4crazy
iPhone4crazy
15 years ago

Great now the next thing to fix is terminal for iOS 4 so we can change our root passwords. Then I will jailbreak…and sleep at night.

dude
dude
15 years ago

cant find it on my cydia…

Nick
Nick
15 years ago

After I installed SSH the first time I opened Rock it automatically prompted me to change the root password and I was able to do it right in Rock much more easily than with Terminal.

You And Me
You And Me
15 years ago

hi gary,
i was updating my iphone 4 to 4.0.2 update & suddenly got 1004 error now my phone is not working please help

Jason
Jason
15 years ago

This is old news and why is it that I can’t post comments from my iPhone 3GS?

iPhone4crazy
iPhone4crazy
15 years ago

It might be because the email/nickname screen pops up on the top or bottom of the mobile page, I couldn’t figure it out for a while too.

iPhone4crazy
iPhone4crazy
15 years ago

Great tip. Thanks Nick. 😀

Nick
Nick
15 years ago

Has anyone else had a problem with the flash since updating? I don’t know at which point my flash started screwing up, but when I first got the iphone I could turn it on and it would stay on if I turned it on either with the camera app in video mode (not recording) or the flashlight app from the app store… but now with either of those apps it turns on for just a second and then turns off again. The only way I can make it actually stay on is by recording a video and then turning the flash on after starting the video recording. Maybe it’s this patch that screwed it up, or maybe it’s that I had to get a replacement iPhone so this is my 2nd.. But it seems like a software problem. Anyone? I’m going to restore it when I get home and see if that helps, I’m out of town for the weekend, but all these bugs are really adding up….

Chris Thomson
15 years ago

Did you jailbreak it?

iGuy
iGuy
15 years ago

I feel embarrassed asking this but what does it do? I really don’t understand what the PDF Patch does. I understand how jailbreakme.com works and all about the security holes, but the purpose of PDF Patch is eluding me. Does it re-open the holes that 4.0.2 fixes? Does it fix the bug itself, so after you jailbreak and install PDF Patch, you can’t be maliciously attacked by another PDF exploit? Someone, please, toss this retarded dog a bone here. Also I tried installing it anyways. The most recent version of PDF Loader Warning in Cydia now includes PDF Patch but when I select upgrade it says “The requested modifications cannot be applied due to required dependencies or conflicts that cannot be automatically found or fixed”

iGuy
iGuy
15 years ago

Saurik released a working version of Terminal that is compatible with iOS4.

http://hackulo.us/forums/index.php?/topic/82943-mobile-terminal-v3643-12-ios-4-compatible/

15
0
Would love your thoughts, please comment.x
()
x