Release appearance
iOS 7.1.2 Public
Recorded context
About this appearance
iOS 7.1.2 improved iBeacon and accessory communication, protected Mail attachments correctly, and closed a broad set of device, process, browser, and trust weaknesses.
- Date
- Jun 30, 2014
- Availability
- available
- Revision
- No
Release notes
What changed
Original editorial synthesis. Linked references appear with the claims they support and in the source ledger.
The visible maintenance work focused on nearby and attached hardware: iBeacon behavior became more stable, and a transfer defect affecting some third-party accessories, including barcode scanners, was corrected.[1]
Source ledger
References
Sources are linked to the claims they support. Publication and access dates are shown when available.
- About iOS 7 Updates
Apple Support · Apple · 2013-09-18T00:00:00.000Z · iOS 7.1.2 — iBeacon and third-party accessories
- About iOS 7 Updates
Apple Support · Apple · 2013-09-18T00:00:00.000Z · iOS 7.1.2 — Mail attachment data protection
- About the security content of iOS 7.1.2
Apple Support · 2026-07-30 · Mail, Lockdown, Lock Screen, launchd, Safari, WebKit, Certificate Trust Policy, and Kernel entries
- About the security content of iOS 7.1.2
Apple Support · 2026-07-30 · Certificate Trust Policy; Kernel — CVE-2014-1355
- Apple security updates (2014)
Apple Support · Apple · 2023-08-10T00:00:00.000Z · iOS 7.1.2 — 30 June 2014
- About iOS 7 Updates
Apple Support · Apple · 2013-09-18T00:00:00.000Z · iOS 7.1.2 — iBeacon
- About iOS 7 Updates
Apple Support · Apple · 2013-09-18T00:00:00.000Z · iOS 7.1.2 — third-party accessories
- About the security content of iOS 7.1.2
Apple Support · 2026-07-30 · iOS 7.1.2 security content
- About iOS 7 Updates
Apple Support · Apple · 2013-09-18T00:00:00.000Z · iOS 7.1.2
- About the security content of iOS 7.1.2
Apple Support · 2026-07-30 · launchd — CVE-2014-1356 through CVE-2014-1359
- About the security content of iOS 7.1.2
Apple Support · 2026-07-30 · Lockdown — CVE-2014-1360; Lock Screen — CVE-2014-1352 and CVE-2014-1353; Settings — CVE-2014-1350; Siri — CVE-2014-1351
- About the security content of iOS 7.1.2
Apple Support · 2026-07-30 · Mail — CVE-2014-1348
- About the security content of iOS 7.1.2
Apple Support · 2026-07-30 · Safari — CVE-2014-1349; WebKit — CVE-2014-1345, CVE-2014-1346, and listed memory-corruption entries
Release changes
Changed in this release
Features, fixes, removals, and regressions first observed in this release record.
security · fixed
Safari and WebKit content security
Apple fixed a Safari use-after-free, multiple WebKit memory-corruption issues, a postMessage origin-encoding flaw, and an address-bar domain-spoofing condition.
- [1] About the security content of iOS 7.1.2 · Safari — CVE-2014-1349; WebKit — CVE-2014-1345, CVE-2014-1346, and listed memory-corruption entries
security · fixed
launchd privilege safeguards
Improved bounds checking addressed IPC-message and log-message heap overflows together with integer overflow and underflow paths in the system service manager.
- [1] About the security content of iOS 7.1.2 · launchd — CVE-2014-1356 through CVE-2014-1359
compatibility · fixed
Third-party accessory data transfer
The update repaired communication with a subset of third-party accessory hardware rather than changing the overall accessory model.
- [1] About iOS 7 Updates · iOS 7.1.2 — third-party accessories
security · fixed
Mail attachment data protection
Apple changed the attachment encryption class after documenting that physical access could expose Mail attachments on iPhone 4 under the affected configuration.
- [1] About iOS 7 Updates · iOS 7.1.2 — Mail attachment data protection
- [2] About the security content of iOS 7.1.2 · Mail — CVE-2014-1348
enhancement · changed
iBeacon connectivity and stability
Apple identified more dependable iBeacon behavior as one of the three principal user-facing changes in iOS 7.1.2.
- [1] About iOS 7 Updates · iOS 7.1.2 — iBeacon
security · fixed
Certificate trust and kernel validation
The release revised the trusted-certificate policy and added validation for IOKit API arguments that could otherwise trigger a kernel null-pointer dereference and unexpected restart.
- [1] About the security content of iOS 7.1.2 · Certificate Trust Policy; Kernel — CVE-2014-1355
security · fixed
Activation, lock-screen, account, and Siri boundaries
Additional checks and state handling reduced partial Activation Lock bypass, enforced failed-passcode limits, protected the prior foreground app, required proper Find My iPhone authorization, and gated Siri’s complete contact list behind the passcode.
- [1] About the security content of iOS 7.1.2 · Lockdown — CVE-2014-1360; Lock Screen — CVE-2014-1352 and CVE-2014-1353; Settings — CVE-2014-1350; Siri — CVE-2014-1351