Skip to main content

Diffing an iOS dylib - CVE-2024-23218

Setup

Start with taking a look at the apple security update from Jan 2024:

Alt text

Extract the libcorecrypo.dylib from the dyld_shared_cache...

Run ghidirff:

$ ghidriff libcorecrypto.dylib-14.2.1 libcorecrypto.dylib-14.3

Analyze the Diff

Results in this beatiful markdown: