mirror of
https://github.com/JGoyd/JGoyd.git
synced 2026-08-10 10:40:31 +02:00
Publish canonical activity front page
This commit is contained in:
@@ -1,61 +1,51 @@
|
||||
# CNVD-2025-06744 / CNVD-YCGO-202503023656 — Apple iOS / iPadOS buffer-overflow vulnerability (Track B, Provisional)
|
||||
# CNVD-2025-06744 / CNVD-YCGO-202503023656
|
||||
|
||||
> **Status:** Provisional. Upgraded from Stub on 2026-05-18 upon receipt of the issuing-body certificate PDF.
|
||||
> **Track B standing disclaimer:** Filing and agency acknowledgement does not constitute adjudication of the underlying claims.
|
||||
Apple iOS / iPadOS buffer-overflow certificate.
|
||||
|
||||
## My Role
|
||||
## Status
|
||||
|
||||
**Original-vulnerability contributor**, per the literal text of the issued certificate (see "External Anchors" below). The certificate header reads 原创漏洞证明 ("Original Vulnerability Certificate") and identifies the contributor (贡献者) as **Joseph Goydish**, affiliated as 个人报送者 ("individual submitter / personal contributor"). This is a faithful translation of the document; it is not a self-characterization.
|
||||
Anchor-grade CNVD/CNCERT certificate exhibit.
|
||||
|
||||
For the broader credit-asymmetry context that places this certificate in the Glass Cage flagship narrative, see "Cross-references" below.
|
||||
This folder should be cited as a CNVD/CNCERT original-vulnerability certificate record naming Joseph Goydish as contributor.
|
||||
|
||||
## Affected Product / Vendor
|
||||
## Certificate Facts
|
||||
|
||||
Apple iOS and Apple iPadOS — vulnerability class per certificate: 缓冲区溢出漏洞 ("buffer-overflow vulnerability"), 通用—操作系统-高危 ("general — operating system — high severity"). Specific build range and patch mapping are not disclosed on the certificate itself and are withheld here pending vendor advisory or CVE assignment.
|
||||
|
||||
## Timeline
|
||||
|
||||
| Date | Event | External source / reference |
|
||||
|---|---|---|
|
||||
| 2025-03-18 | CNVD records submission; certificate `CNVD-YCGO-202503023656` issued | Issuing-body PDF (staged) |
|
||||
| 2026-05-18 | Certificate PDF received in scaffold; folder upgraded Stub → Provisional | This README |
|
||||
|
||||
## External Anchors
|
||||
|
||||
- **Issuing body:** 国家信息安全漏洞共享平台 (China National Vulnerability Database, CNVD), under 国家互联网应急中心 / CNCERT (China's national CERT), with co-issuance line for 中国互联网协会网络与信息安全工作委员会 (Internet Society of China — Network & Information Security Committee). CNCERT is the sovereign CERT counterpart to US-CERT/CISA.
|
||||
- **CNVD vulnerability identifier:** `CNVD-2025-06744` — sole-namespace, server-issued
|
||||
- **CNVD original-vulnerability certificate number:** `CNVD-YCGO-202503023656` — sole-namespace, server-issued
|
||||
- **Vulnerability-class designation on certificate:** 通用—操作系统-高危 (general / OS / high severity)
|
||||
- **Contributor named on certificate (verbatim):** Joseph Goydish, 个人报送者 (personal contributor)
|
||||
- **Date of record on certificate (verbatim):** `2025年03月18日` (printed under 收录时间 / "recording date")
|
||||
- **Anchor class:** Tier 1 (sovereign-CERT certificate PDF). Promoted from Tier 0 stub on 2026-05-18.
|
||||
| Field | Value |
|
||||
| --- | --- |
|
||||
| Issuing body shown on PDF | China National Vulnerability Database (CNVD), with CNCERT line |
|
||||
| Certificate class shown on PDF | Original vulnerability certificate |
|
||||
| CNVD vulnerability ID | CNVD-2025-06744 |
|
||||
| Certificate number | CNVD-YCGO-202503023656 |
|
||||
| Vulnerability label | Apple iOS / Apple iPadOS buffer overflow |
|
||||
| Severity class printed on PDF | General / operating system / high severity |
|
||||
| Contributor printed on PDF | Joseph Goydish |
|
||||
| Contributor affiliation printed on PDF | Individual submitter |
|
||||
| Record date printed on PDF | 2025-03-18 |
|
||||
|
||||
## Evidence
|
||||
|
||||
| # | Artifact | Path (relative to this folder's `evidence/`) | SHA-256 | OTS | PGP |
|
||||
|---|---|---|---|---|---|
|
||||
| 1 | CNVD original-vulnerability certificate (issuing-body PDF) | `CNVD-2025-06744-YCGO-202503023656-Certificate-2025-03-18.pdf` | `352a56ff1319e1b8138b1f4c6f55b652cf09ccd8c6784610e3a3ef6a9a80723c` | pending (batch 11 anchor script) | pending (batch 11 anchor script) |
|
||||
| Artifact | Path | SHA-256 |
|
||||
| --- | --- | --- |
|
||||
| CNVD original-vulnerability certificate PDF | `evidence/CNVD-2025-06744-YCGO-202503023656-Certificate-2025-03-18.pdf` | `352A56FF1319E1B8138B1F4C6F55B652CF09CCD8C6784610E3A3EF6A9A80723C` |
|
||||
|
||||
## Verification Steps
|
||||
## Verification
|
||||
|
||||
1. Compute `sha256sum` of the staged PDF and confirm it matches the hash recorded above byte-for-byte.
|
||||
2. After running `ANCHOR-COMMANDS-2026-05-18-batch10.sh`, the `.ots` proof binds the PDF's bytes to a Bitcoin-block timestamp post-dating the stamp time, and the `.asc` detached PGP signature binds the bytes to the filer's canonical key `4A04 1F50 6D89 4F5E E391 7438 6487 8B56 A2EB 2D11`.
|
||||
3. CNVD vulnerability identifiers and certificate numbers are server-issued by CNCERT infrastructure and are not user-supplied; the sole-namespace property establishes that the issuance event could only have been originated by the issuing body.
|
||||
4. The contributor name string "Joseph Goydish" appears rendered as embedded text in the PDF (extractable via standard PDF text extraction); no overlay or annotation layer is present.
|
||||
```powershell
|
||||
Get-FileHash -Algorithm SHA256 .\evidence\CNVD-2025-06744-YCGO-202503023656-Certificate-2025-03-18.pdf
|
||||
```
|
||||
|
||||
## Cross-references
|
||||
The hash must match the value above.
|
||||
|
||||
- **TRACK-B-CVE-2025-24085-24201-43300 (Glass Cage flagship #2):** The filer attests that the underlying technical material disclosed under CNVD-2025-06744 and CNVD-2025-07885 is the same body of work documented under the Glass Cage chain (CVE-2025-24085, CVE-2025-24201, CVE-2025-43300). Recorded as **filer attestation**, not as adjudicated finding. The credit-asymmetry pattern — Apple's advisories crediting other reporters for the underlying patches while CNCERT/CNVD issued formal original-vulnerability certificates to this filer — is documented in the Glass Cage README's "Apple's advisories credit other reporters" section.
|
||||
- **TRACK-B-CNVD-2025-07885:** Sibling CNVD certificate, same issuing body, dated 2025-04-22, for an Apple-products memory-release-then-reuse (use-after-free) vulnerability class. Both certificates were issued to the same contributor under the same affiliation string within a five-week window.
|
||||
PDF text extraction confirms the certificate identifies:
|
||||
|
||||
## Disclosure Status
|
||||
```text
|
||||
CNVD-2025-06744
|
||||
Apple iOS and Apple iPadOS buffer overflow
|
||||
Contributor: Joseph Goydish
|
||||
Certificate: CNVD-YCGO-202503023656
|
||||
Record date: 2025-03-18
|
||||
```
|
||||
|
||||
Coordinated through CNVD's standard intake. The certificate's existence establishes that CNCERT recorded and accepted the submission as an original-vulnerability contribution. No vendor advisory or matching CVE-ID cross-reference is asserted on the certificate itself; any such mapping is the filer's attested context, not an issuing-body finding.
|
||||
## Weight
|
||||
|
||||
## Safety Notes
|
||||
|
||||
No exploit payload, no PoC, no weaponized technical detail is staged in this folder or referenced in this README. The artifact is the issuing-body certificate document, nothing more. Vulnerability-class language ("buffer overflow") is reproduced solely as it appears verbatim on the certificate.
|
||||
|
||||
## Anchor-class commentary
|
||||
|
||||
This is the system's first appearance of a **sovereign-CERT original-vulnerability certificate** as a Track B anchor. Unlike DKIM-signed acknowledgement emails (which prove "the agency's mail server emitted this string at this time") and unlike GitHub-public-issue URLs (which prove "this issue text was visible on a third-party platform"), an original-vulnerability certificate PDF from a national CERT body asserts a *substantive* finding by the issuing body: that the named contributor's submission was recorded as an original vulnerability disclosure. The certificate does not adjudicate vendor liability, exploit reachability, or patch mapping; per Track B standing disclaimer, none of those are asserted here either.
|
||||
This is an issuing-body certificate from China's national vulnerability database/CNCERT. It records CNVD-2025-06744 as an original-vulnerability certificate exhibit for an Apple iOS / iPadOS buffer-overflow vulnerability and names Joseph Goydish as contributor.
|
||||
|
||||
@@ -1,61 +1,51 @@
|
||||
# CNVD-2025-07885 / CNVD-YCGO-202504012519 — Apple multi-product memory use-after-free vulnerability (Track B, Provisional)
|
||||
# CNVD-2025-07885 / CNVD-YCGO-202504012519
|
||||
|
||||
> **Status:** Provisional. Upgraded from Stub on 2026-05-18 upon receipt of the issuing-body certificate PDF.
|
||||
> **Track B standing disclaimer:** Filing and agency acknowledgement does not constitute adjudication of the underlying claims.
|
||||
Apple multi-product memory-reuse certificate.
|
||||
|
||||
## My Role
|
||||
## Status
|
||||
|
||||
**Original-vulnerability contributor**, per the literal text of the issued certificate (see "External Anchors" below). The certificate header reads 原创漏洞证明 ("Original Vulnerability Certificate") and identifies the contributor (贡献者) as **Joseph Goydish**, affiliated as 个人报送者 ("individual submitter / personal contributor"). This is a faithful translation of the document; it is not a self-characterization.
|
||||
Anchor-grade CNVD/CNCERT certificate exhibit.
|
||||
|
||||
For the broader credit-asymmetry context that places this certificate in the Glass Cage flagship narrative, see "Cross-references" below.
|
||||
This folder should be cited as a CNVD/CNCERT original-vulnerability certificate record naming Joseph Goydish as contributor.
|
||||
|
||||
## Affected Product / Vendor
|
||||
## Certificate Facts
|
||||
|
||||
Apple multi-product (per certificate title: Apple多款产品) — vulnerability class: 内存释放后再利用漏洞 ("memory-release-then-reuse vulnerability", i.e. use-after-free / UAF), 通用—操作系统-高危 ("general — operating system — high severity"). Specific build range and patch mapping are not disclosed on the certificate itself and are withheld here pending vendor advisory or CVE assignment.
|
||||
|
||||
## Timeline
|
||||
|
||||
| Date | Event | External source / reference |
|
||||
|---|---|---|
|
||||
| 2025-04-22 | CNVD records submission; certificate `CNVD-YCGO-202504012519` issued | Issuing-body PDF (staged) |
|
||||
| 2026-05-18 | Certificate PDF received in scaffold; folder upgraded Stub → Provisional | This README |
|
||||
|
||||
## External Anchors
|
||||
|
||||
- **Issuing body:** 国家信息安全漏洞共享平台 (China National Vulnerability Database, CNVD), under 国家互联网应急中心 / CNCERT (China's national CERT), with co-issuance line for 中国互联网协会网络与信息安全工作委员会 (Internet Society of China — Network & Information Security Committee). CNCERT is the sovereign CERT counterpart to US-CERT/CISA.
|
||||
- **CNVD vulnerability identifier:** `CNVD-2025-07885` — sole-namespace, server-issued
|
||||
- **CNVD original-vulnerability certificate number:** `CNVD-YCGO-202504012519` — sole-namespace, server-issued
|
||||
- **Vulnerability-class designation on certificate:** 通用—操作系统-高危 (general / OS / high severity)
|
||||
- **Contributor named on certificate (verbatim):** Joseph Goydish, 个人报送者 (personal contributor)
|
||||
- **Date of record on certificate (verbatim):** `2025年04月22日` (printed under 收录时间 / "recording date")
|
||||
- **Anchor class:** Tier 1 (sovereign-CERT certificate PDF). Promoted from Tier 0 stub on 2026-05-18.
|
||||
| Field | Value |
|
||||
| --- | --- |
|
||||
| Issuing body shown on PDF | China National Vulnerability Database (CNVD), with CNCERT line |
|
||||
| Certificate class shown on PDF | Original vulnerability certificate |
|
||||
| CNVD vulnerability ID | CNVD-2025-07885 |
|
||||
| Certificate number | CNVD-YCGO-202504012519 |
|
||||
| Vulnerability label | Apple multi-product memory reuse |
|
||||
| Severity class printed on PDF | General / operating system / high severity |
|
||||
| Contributor printed on PDF | Joseph Goydish |
|
||||
| Contributor affiliation printed on PDF | Individual submitter |
|
||||
| Record date printed on PDF | 2025-04-22 |
|
||||
|
||||
## Evidence
|
||||
|
||||
| # | Artifact | Path (relative to this folder's `evidence/`) | SHA-256 | OTS | PGP |
|
||||
|---|---|---|---|---|---|
|
||||
| 1 | CNVD original-vulnerability certificate (issuing-body PDF) | `CNVD-2025-07885-YCGO-202504012519-Certificate-2025-04-22.pdf` | `d5bb17d5a27eabd32d272173116c90f89f12cdd912a26969115007383a7f21c8` | pending (batch 11 anchor script) | pending (batch 11 anchor script) |
|
||||
| Artifact | Path | SHA-256 |
|
||||
| --- | --- | --- |
|
||||
| CNVD original-vulnerability certificate PDF | `evidence/CNVD-2025-07885-YCGO-202504012519-Certificate-2025-04-22.pdf` | `D5BB17D5A27EABD32D272173116C90F89F12CDD912A26969115007383A7F21C8` |
|
||||
|
||||
## Verification Steps
|
||||
## Verification
|
||||
|
||||
1. Compute `sha256sum` of the staged PDF and confirm it matches the hash recorded above byte-for-byte.
|
||||
2. After running `ANCHOR-COMMANDS-2026-05-18-batch10.sh`, the `.ots` proof binds the PDF's bytes to a Bitcoin-block timestamp post-dating the stamp time, and the `.asc` detached PGP signature binds the bytes to the filer's canonical key `4A04 1F50 6D89 4F5E E391 7438 6487 8B56 A2EB 2D11`.
|
||||
3. CNVD vulnerability identifiers and certificate numbers are server-issued by CNCERT infrastructure and are not user-supplied; the sole-namespace property establishes that the issuance event could only have been originated by the issuing body.
|
||||
4. The contributor name string "Joseph Goydish" appears rendered as embedded text in the PDF (extractable via standard PDF text extraction); no overlay or annotation layer is present.
|
||||
```powershell
|
||||
Get-FileHash -Algorithm SHA256 .\evidence\CNVD-2025-07885-YCGO-202504012519-Certificate-2025-04-22.pdf
|
||||
```
|
||||
|
||||
## Cross-references
|
||||
The hash must match the value above.
|
||||
|
||||
- **TRACK-B-CVE-2025-24085-24201-43300 (Glass Cage flagship #2):** The filer attests that the underlying technical material disclosed under CNVD-2025-07885 and CNVD-2025-06744 is the same body of work documented under the Glass Cage chain (CVE-2025-24085, CVE-2025-24201, CVE-2025-43300). Recorded as **filer attestation**, not as adjudicated finding. The credit-asymmetry pattern — Apple's advisories crediting other reporters for the underlying patches while CNCERT/CNVD issued formal original-vulnerability certificates to this filer — is documented in the Glass Cage README's "Apple's advisories credit other reporters" section.
|
||||
- **TRACK-B-CNVD-2025-06744:** Sibling CNVD certificate, same issuing body, dated 2025-03-18, for an Apple iOS/iPadOS buffer-overflow vulnerability class. Both certificates were issued to the same contributor under the same affiliation string within a five-week window.
|
||||
PDF text extraction confirms the certificate identifies:
|
||||
|
||||
## Disclosure Status
|
||||
```text
|
||||
CNVD-2025-07885
|
||||
Apple multi-product memory reuse
|
||||
Contributor: Joseph Goydish
|
||||
Certificate: CNVD-YCGO-202504012519
|
||||
Record date: 2025-04-22
|
||||
```
|
||||
|
||||
Coordinated through CNVD's standard intake. The certificate's existence establishes that CNCERT recorded and accepted the submission as an original-vulnerability contribution. No vendor advisory or matching CVE-ID cross-reference is asserted on the certificate itself; any such mapping is the filer's attested context, not an issuing-body finding.
|
||||
## Weight
|
||||
|
||||
## Safety Notes
|
||||
|
||||
No exploit payload, no PoC, no weaponized technical detail is staged in this folder or referenced in this README. The artifact is the issuing-body certificate document, nothing more. Vulnerability-class language ("memory-release-then-reuse" / use-after-free) is reproduced solely as it appears verbatim on the certificate.
|
||||
|
||||
## Anchor-class commentary
|
||||
|
||||
Per the same framing as the sibling folder: this is a **sovereign-CERT original-vulnerability certificate** anchor — a substantively different evidentiary class from DKIM-signed acknowledgement emails or GitHub-public-issue URL snapshots. The issuing body asserts the contributor was recorded as an original-vulnerability submitter; the certificate does not adjudicate vendor liability, exploit reachability, or patch mapping; per Track B standing disclaimer, none of those are asserted here either.
|
||||
This is an issuing-body certificate from China's national vulnerability database/CNCERT. It records CNVD-2025-07885 as an original-vulnerability certificate exhibit for an Apple memory-reuse vulnerability and names Joseph Goydish as contributor.
|
||||
|
||||
Reference in New Issue
Block a user