The 2012 Pwnie Nominee For Best Privilege Escalation Bug

iOS HFS Catalog File Integer Underflow (CVE-2012-0642)

Credit: pod2g

This exploit was used for the Absinthe iOS 5.0/5.0.1 untether. It massaged the kernel heap into submission, copying over the syscall table and giving pod2g (as well as jailbreak users everywhere) a happy ending. And who doesn’t love happy endings?

(CVE-2012-0642)