Release appearance

iOS 7.1.2 Public

Full article
Public release

Recorded context

About this appearance

iOS 7.1.2 improved iBeacon and accessory communication, protected Mail attachments correctly, and closed a broad set of device, process, browser, and trust weaknesses.

Date
Jun 30, 2014
Availability
available
Revision
No

Release notes

What changed

Original editorial synthesis. Linked references appear with the claims they support and in the source ledger.

The visible maintenance work focused on nearby and attached hardware: iBeacon behavior became more stable, and a transfer defect affecting some third-party accessories, including barcode scanners, was corrected.[1]

The update also changed Mail attachment encryption and carried a substantial security set spanning activation and lock-screen boundaries, system-service memory safety, browser content, trust policy, and kernel input validation.[2][3]

Source ledger

References

Sources are linked to the claims they support. Publication and access dates are shown when available.

  1. About iOS 7 Updates

    Apple Support · Apple · 2013-09-18T00:00:00.000Z · iOS 7.1.2 — iBeacon and third-party accessories

    Back to text ↑
  2. About iOS 7 Updates

    Apple Support · Apple · 2013-09-18T00:00:00.000Z · iOS 7.1.2 — Mail attachment data protection

    Back to text ↑
  3. About the security content of iOS 7.1.2

    Apple Support · 2026-07-30 · Mail, Lockdown, Lock Screen, launchd, Safari, WebKit, Certificate Trust Policy, and Kernel entries

    Back to text ↑
  4. About the security content of iOS 7.1.2

    Apple Support · 2026-07-30 · Certificate Trust Policy; Kernel — CVE-2014-1355

  5. Apple security updates (2014)

    Apple Support · Apple · 2023-08-10T00:00:00.000Z · iOS 7.1.2 — 30 June 2014

  6. About iOS 7 Updates

    Apple Support · Apple · 2013-09-18T00:00:00.000Z · iOS 7.1.2 — iBeacon

  7. About iOS 7 Updates

    Apple Support · Apple · 2013-09-18T00:00:00.000Z · iOS 7.1.2 — third-party accessories

  8. About the security content of iOS 7.1.2

    Apple Support · 2026-07-30 · iOS 7.1.2 security content

  9. About iOS 7 Updates

    Apple Support · Apple · 2013-09-18T00:00:00.000Z · iOS 7.1.2

  10. About the security content of iOS 7.1.2

    Apple Support · 2026-07-30 · launchd — CVE-2014-1356 through CVE-2014-1359

  11. About the security content of iOS 7.1.2

    Apple Support · 2026-07-30 · Lockdown — CVE-2014-1360; Lock Screen — CVE-2014-1352 and CVE-2014-1353; Settings — CVE-2014-1350; Siri — CVE-2014-1351

  12. About the security content of iOS 7.1.2

    Apple Support · 2026-07-30 · Mail — CVE-2014-1348

  13. About the security content of iOS 7.1.2

    Apple Support · 2026-07-30 · Safari — CVE-2014-1349; WebKit — CVE-2014-1345, CVE-2014-1346, and listed memory-corruption entries

Release changes

Changed in this release

Features, fixes, removals, and regressions first observed in this release record.

security · fixed

Safari and WebKit content security

documentedconfirmed

Apple fixed a Safari use-after-free, multiple WebKit memory-corruption issues, a postMessage origin-encoding flaw, and an address-bar domain-spoofing condition.

  1. [1] About the security content of iOS 7.1.2 · Safari — CVE-2014-1349; WebKit — CVE-2014-1345, CVE-2014-1346, and listed memory-corruption entries

security · fixed

launchd privilege safeguards

documentedconfirmed

Improved bounds checking addressed IPC-message and log-message heap overflows together with integer overflow and underflow paths in the system service manager.

  1. [1] About the security content of iOS 7.1.2 · launchd — CVE-2014-1356 through CVE-2014-1359

compatibility · fixed

Third-party accessory data transfer

documentedconfirmed

The update repaired communication with a subset of third-party accessory hardware rather than changing the overall accessory model.

  1. [1] About iOS 7 Updates · iOS 7.1.2 — third-party accessories

security · fixed

Mail attachment data protection

documentedconfirmed

Apple changed the attachment encryption class after documenting that physical access could expose Mail attachments on iPhone 4 under the affected configuration.

  1. [1] About iOS 7 Updates · iOS 7.1.2 — Mail attachment data protection
  2. [2] About the security content of iOS 7.1.2 · Mail — CVE-2014-1348

enhancement · changed

iBeacon connectivity and stability

documentedconfirmed

Apple identified more dependable iBeacon behavior as one of the three principal user-facing changes in iOS 7.1.2.

  1. [1] About iOS 7 Updates · iOS 7.1.2 — iBeacon

security · fixed

Certificate trust and kernel validation

documentedconfirmed

The release revised the trusted-certificate policy and added validation for IOKit API arguments that could otherwise trigger a kernel null-pointer dereference and unexpected restart.

  1. [1] About the security content of iOS 7.1.2 · Certificate Trust Policy; Kernel — CVE-2014-1355

security · fixed

Activation, lock-screen, account, and Siri boundaries

documentedconfirmed

Additional checks and state handling reduced partial Activation Lock bypass, enforced failed-passcode limits, protected the prior foreground app, required proper Find My iPhone authorization, and gated Siri’s complete contact list behind the passcode.

  1. [1] About the security content of iOS 7.1.2 · Lockdown — CVE-2014-1360; Lock Screen — CVE-2014-1352 and CVE-2014-1353; Settings — CVE-2014-1350; Siri — CVE-2014-1351