|  | 
 
| Last edited by netdepviet on 29-7-2011 11:48 PM 
 Direct download URL : http://appldnld.apple.com/iPhone4/041-1966.20110721.V3Ufe/iPhone3,1_4.3.5_8L1_Restore.ipsw
 
 iOS 4.3.5 Software Update
 
 Data Security
 
 Available for: iOS 3.0 through 4.3.4 for iPhone 3GS and iPhone 4 (GSM), iOS 3.1 through 4.3.4 for iPod touch (3rd generation) and later, iOS 3.2 through 4.3.4 for iPad
 
 Impact: An attacker with a privileged network position may capture or modify data in sessions protected by SSL/TLS
 
 Description: A certificate chain validation issue existed in the handling of X.509 certificates. An attacker with a privileged network position may capture or modify data in sessions protected by SSL/TLS. Other attacks involving X.509 certificate validation may also be possible. This issue is addressed through improved validation of X.509 certificate chains.
 
 CVE-ID
 
 CVE-2011-0228 : Gregor Kopf of Recurity Labs on behalf of BSI, and Paul Kehrer of Trustwave's SpiderLabs
 
 | 
 |