SSL Vulnerability presents in iOS 7.1 beta and OS X Mavericks 10.9.2 Developer Preview

Apple released iOS 6.1.6 and iOS 7.0.6 to address an SSL vulnerability issue on Friday, February 21, 2014. According to reports, the same vulnerability presents in the current build of OS X Mavericks 10.9.1, OS X Mavericks 10.9.2 build 13C62 and iOS 7.1 beta build 11D5145e.

Based on goto fail; test Google Chrome, Mozilla Firefox and Camino on OS X are not affected by this vulnerability. Camino browser was no longer developed as of May 31, 2013.

iOS 7.1 beta 5 build 11D5145e SSL Vulnerability

Apple is expected to fix this SSL vulnerability issue in the upcoming build of iOS 7.1 and OS X Mavericks (10.91 and 10.9.2 Developer Preview).

John Gruber wrote a great post on Daring Fireball regarding this SSL vulnerability issue and NSA exploits on iOS.

According to Jeffrey Grossman’s tweet (Jeffrey903):

I have confirmed that the SSL vulnerability was introduced in iOS 6.0. It is not present in 5.1.1 and is in 6.0 /cc @markgurman

Tin foil hat might be handy, as a sleeper NSA agent might be working at Apple.

iOS 7.1 beta

Apparently Apple seeded iOS 7.1 beta to developers earlier today.

UPDATE:
According to a few chatters, iOS 7.1 beta brings better performance in older iPad. For example, playing high bit-rate and high-resolution movie through Home Sharing no longer stutters.

iOS 7.1 beta

It is available for:

iPad:

  • iPad Air (Model A1474)
  • iPad Air (Model A1475)
  • iPad mini (Model A1489)
  • iPad mini (Model A1490)
  • iPad (4th generation Model A1458)
  • iPad (4th generation Model A1459)
  • iPad (4th generation Model A1460)
  • iPad mini (Model A1432)
  • iPad mini (Model A1454)
  • iPad mini (Model A1455)
  • iPad Wi-Fi (3rd generation)
  • iPad Wi-Fi + Cellular (model for ATT)
  • iPad Wi-Fi + Cellular (model for Verizon)
  • iPad 2 Wi-Fi (Rev A)
  • iPad 2 Wi-Fi
  • iPad 2 Wi-Fi + 3G (GSM)
  • iPad 2 Wi-Fi + 3G (CDMA)

iPhone:

  • iPhone 5s (Model A1453, A1533)
  • iPhone 5s (Model A1457, A1518, A1528, A1530)
  • iPhone 5c (Model A1456, A1532)
  • iPhone 5c (Model A1507, A1516, A1526, A1529)
  • iPhone 5 (Model A1428)
  • iPhone 5 (Model A1429)
  • iPhone 4s
  • iPhone 4 (GSM Rev A)
  • iPhone 4 (GSM)
  • iPhone 4 (CDMA)

iPod touch:

  • iPod touch (5th generation)

Apple TV

  • Apple TV Software beta (3rd generation Rev A)
  • Apple TV Software beta (3rd generation)
  • Apple TV Software beta (2nd generation)

——-

I’m assuming there would be a two-week cycle for iOS 7.1 beta releases.