Undecimus: cynject (and thus cycript) is broken on iOS 12

Describe the bug cynject crashes target process

**To Reproduce

  1. cynject pid dylib

Device (please complete the following information):

  • iOS Version: 12.1.1
  • iOS Device: iPad Air 2
  • unc0ver Version: all of them

Place an “x” between the brackets if true:

  • this is a bug others will be able to reproduce
  • this issue is present with all tweaks uninstalled(except for default packages) or disabled
  • this issue is present after a rootfs restore
  • this issue is present on the latest version of unc0ver

Logs From cycript:

[2892] DarwinInjector.cpp[246]: _krncall(mach_vm_read_overwrite) =4

Crash log:

Exception Type: EXC_BAD_ACCESS (SIGSEGV) Exception Subtype: KERN_INVALID_ADDRESS at 0x00000000000000a6

About this issue

  • Original URL
  • State: closed
  • Created 5 years ago
  • Reactions: 5
  • Comments: 16 (6 by maintainers)

Most upvoted comments

I don’t think there is cynject, but there is a dylib injector, I’ll see if I can make a dummy cynject on top on this

Il giorno domenica 22 settembre 2019, cakarlen notifications@github.com ha scritto:

Is this fixed with 3.7.0~b1?

— You are receiving this because you were mentioned. Reply to this email directly, view it on GitHub https://github.com/pwn20wndstuff/Undecimus/issues/685?email_source=notifications&email_token=AE5VP6MYP5OY7LQCBDOYO4TQK7I5RA5CNFSM4G3UIVWKYY3PNVWWK3TUL52HS4DFVREXG43VMVBW63LNMVXHJKTDN5WW2ZLOORPWSZGOD7JOTTQ#issuecomment-533916110, or mute the thread https://github.com/notifications/unsubscribe-auth/AE5VP6IECGZIUMZRG4YPACTQK7I5RANCNFSM4G3UIVWA .

The substitute version of unc0ver will have a fix

Il giorno venerdì 13 settembre 2019, aarivex notifications@github.com ha scritto:

Hopefully this gets worked on now.

— You are receiving this because you were mentioned. Reply to this email directly, view it on GitHub https://github.com/pwn20wndstuff/Undecimus/issues/685?email_source=notifications&email_token=AE5VP6OXIZEAZ2LOPAXQTS3QJPM6JA5CNFSM4G3UIVWKYY3PNVWWK3TUL52HS4DFVREXG43VMVBW63LNMVXHJKTDN5WW2ZLOORPWSZGOD6V3NDI#issuecomment-531347085, or mute the thread https://github.com/notifications/unsubscribe-auth/AE5VP6JRBCBDEFEMQYX6GWTQJPM6JANCNFSM4G3UIVWA .

@scugn1zz0 he’s using tweak mode, not runtime injection