Release appearance

iOS 4.3.4 Public

Full article
Public release

Recorded context

About this appearance

iOS 4.3.4 closed two crafted-PDF font vulnerabilities and a framebuffer privilege-escalation path.

Date
Jul 15, 2011
Availability
available
Revision
No

Release notes

What changed

Original editorial synthesis. Linked references appear with the claims they support and in the source ledger.

Two CoreGraphics corrections addressed FreeType handling of TrueType and Type 1 fonts inside malicious PDF files. Apple documented application termination or arbitrary code execution as possible outcomes.[1]

The update also corrected an invalid type conversion in IOMobileFrameBuffer queueing primitives that could allow code already running as the user to gain system privileges. Apple’s index dates the release to July 15, 2011.[2][3]

Source ledger

References

Sources are linked to the claims they support. Publication and access dates are shown when available.

  1. About the security content of iOS 4.3.4 Software Update

    Apple Support · 2026-07-30 · CoreGraphics — CVE-2010-3855 and CVE-2011-0226

    Back to text ↑
  2. About the security content of iOS 4.3.4 Software Update

    Apple Support · 2026-07-30 · IOMobileFrameBuffer — CVE-2011-0227

    Back to text ↑
  3. Apple security updates (2011 to 2012)

    Apple Support · Apple · 2023-08-10T00:00:00.000Z · iOS 4.3.4 — 15 July 2011

    Back to text ↑
  4. About the security content of iOS 4.3.4 Software Update

    Apple Support · 2026-07-30 · CoreGraphics — CVE-2010-3855

  5. About the security content of iOS 4.3.4 Software Update

    Apple Support · 2026-07-30 · CoreGraphics — CVE-2011-0226

  6. About the security content of iOS 4.3.4 Software Update

    Apple Support · 2026-07-30 · iOS 4.3.4 security content

Release changes

Changed in this release

Features, fixes, removals, and regressions first observed in this release record.