Publish canonical activity front page

This commit is contained in:
Joseph R. Goydish II
2026-05-21 13:09:55 -07:00
parent ebe1b69bcd
commit 344a6beb62
10 changed files with 594 additions and 195 deletions
+35 -45
View File
@@ -1,61 +1,51 @@
# CNVD-2025-06744 / CNVD-YCGO-202503023656 — Apple iOS / iPadOS buffer-overflow vulnerability (Track B, Provisional)
# CNVD-2025-06744 / CNVD-YCGO-202503023656
> **Status:** Provisional. Upgraded from Stub on 2026-05-18 upon receipt of the issuing-body certificate PDF.
> **Track B standing disclaimer:** Filing and agency acknowledgement does not constitute adjudication of the underlying claims.
Apple iOS / iPadOS buffer-overflow certificate.
## My Role
## Status
**Original-vulnerability contributor**, per the literal text of the issued certificate (see "External Anchors" below). The certificate header reads 原创漏洞证明 ("Original Vulnerability Certificate") and identifies the contributor (贡献者) as **Joseph Goydish**, affiliated as 个人报送者 ("individual submitter / personal contributor"). This is a faithful translation of the document; it is not a self-characterization.
Anchor-grade CNVD/CNCERT certificate exhibit.
For the broader credit-asymmetry context that places this certificate in the Glass Cage flagship narrative, see "Cross-references" below.
This folder should be cited as a CNVD/CNCERT original-vulnerability certificate record naming Joseph Goydish as contributor.
## Affected Product / Vendor
## Certificate Facts
Apple iOS and Apple iPadOS — vulnerability class per certificate: 缓冲区溢出漏洞 ("buffer-overflow vulnerability"), 通用—操作系统-高危 ("general — operating system — high severity"). Specific build range and patch mapping are not disclosed on the certificate itself and are withheld here pending vendor advisory or CVE assignment.
## Timeline
| Date | Event | External source / reference |
|---|---|---|
| 2025-03-18 | CNVD records submission; certificate `CNVD-YCGO-202503023656` issued | Issuing-body PDF (staged) |
| 2026-05-18 | Certificate PDF received in scaffold; folder upgraded Stub → Provisional | This README |
## External Anchors
- **Issuing body:** 国家信息安全漏洞共享平台 (China National Vulnerability Database, CNVD), under 国家互联网应急中心 / CNCERT (China's national CERT), with co-issuance line for 中国互联网协会网络与信息安全工作委员会 (Internet Society of China — Network & Information Security Committee). CNCERT is the sovereign CERT counterpart to US-CERT/CISA.
- **CNVD vulnerability identifier:** `CNVD-2025-06744` — sole-namespace, server-issued
- **CNVD original-vulnerability certificate number:** `CNVD-YCGO-202503023656` — sole-namespace, server-issued
- **Vulnerability-class designation on certificate:** 通用—操作系统-高危 (general / OS / high severity)
- **Contributor named on certificate (verbatim):** Joseph Goydish, 个人报送者 (personal contributor)
- **Date of record on certificate (verbatim):** `2025年03月18日` (printed under 收录时间 / "recording date")
- **Anchor class:** Tier 1 (sovereign-CERT certificate PDF). Promoted from Tier 0 stub on 2026-05-18.
| Field | Value |
| --- | --- |
| Issuing body shown on PDF | China National Vulnerability Database (CNVD), with CNCERT line |
| Certificate class shown on PDF | Original vulnerability certificate |
| CNVD vulnerability ID | CNVD-2025-06744 |
| Certificate number | CNVD-YCGO-202503023656 |
| Vulnerability label | Apple iOS / Apple iPadOS buffer overflow |
| Severity class printed on PDF | General / operating system / high severity |
| Contributor printed on PDF | Joseph Goydish |
| Contributor affiliation printed on PDF | Individual submitter |
| Record date printed on PDF | 2025-03-18 |
## Evidence
| # | Artifact | Path (relative to this folder's `evidence/`) | SHA-256 | OTS | PGP |
|---|---|---|---|---|---|
| 1 | CNVD original-vulnerability certificate (issuing-body PDF) | `CNVD-2025-06744-YCGO-202503023656-Certificate-2025-03-18.pdf` | `352a56ff1319e1b8138b1f4c6f55b652cf09ccd8c6784610e3a3ef6a9a80723c` | pending (batch 11 anchor script) | pending (batch 11 anchor script) |
| Artifact | Path | SHA-256 |
| --- | --- | --- |
| CNVD original-vulnerability certificate PDF | `evidence/CNVD-2025-06744-YCGO-202503023656-Certificate-2025-03-18.pdf` | `352A56FF1319E1B8138B1F4C6F55B652CF09CCD8C6784610E3A3EF6A9A80723C` |
## Verification Steps
## Verification
1. Compute `sha256sum` of the staged PDF and confirm it matches the hash recorded above byte-for-byte.
2. After running `ANCHOR-COMMANDS-2026-05-18-batch10.sh`, the `.ots` proof binds the PDF's bytes to a Bitcoin-block timestamp post-dating the stamp time, and the `.asc` detached PGP signature binds the bytes to the filer's canonical key `4A04 1F50 6D89 4F5E E391 7438 6487 8B56 A2EB 2D11`.
3. CNVD vulnerability identifiers and certificate numbers are server-issued by CNCERT infrastructure and are not user-supplied; the sole-namespace property establishes that the issuance event could only have been originated by the issuing body.
4. The contributor name string "Joseph Goydish" appears rendered as embedded text in the PDF (extractable via standard PDF text extraction); no overlay or annotation layer is present.
```powershell
Get-FileHash -Algorithm SHA256 .\evidence\CNVD-2025-06744-YCGO-202503023656-Certificate-2025-03-18.pdf
```
## Cross-references
The hash must match the value above.
- **TRACK-B-CVE-2025-24085-24201-43300 (Glass Cage flagship #2):** The filer attests that the underlying technical material disclosed under CNVD-2025-06744 and CNVD-2025-07885 is the same body of work documented under the Glass Cage chain (CVE-2025-24085, CVE-2025-24201, CVE-2025-43300). Recorded as **filer attestation**, not as adjudicated finding. The credit-asymmetry pattern — Apple's advisories crediting other reporters for the underlying patches while CNCERT/CNVD issued formal original-vulnerability certificates to this filer — is documented in the Glass Cage README's "Apple's advisories credit other reporters" section.
- **TRACK-B-CNVD-2025-07885:** Sibling CNVD certificate, same issuing body, dated 2025-04-22, for an Apple-products memory-release-then-reuse (use-after-free) vulnerability class. Both certificates were issued to the same contributor under the same affiliation string within a five-week window.
PDF text extraction confirms the certificate identifies:
## Disclosure Status
```text
CNVD-2025-06744
Apple iOS and Apple iPadOS buffer overflow
Contributor: Joseph Goydish
Certificate: CNVD-YCGO-202503023656
Record date: 2025-03-18
```
Coordinated through CNVD's standard intake. The certificate's existence establishes that CNCERT recorded and accepted the submission as an original-vulnerability contribution. No vendor advisory or matching CVE-ID cross-reference is asserted on the certificate itself; any such mapping is the filer's attested context, not an issuing-body finding.
## Weight
## Safety Notes
No exploit payload, no PoC, no weaponized technical detail is staged in this folder or referenced in this README. The artifact is the issuing-body certificate document, nothing more. Vulnerability-class language ("buffer overflow") is reproduced solely as it appears verbatim on the certificate.
## Anchor-class commentary
This is the system's first appearance of a **sovereign-CERT original-vulnerability certificate** as a Track B anchor. Unlike DKIM-signed acknowledgement emails (which prove "the agency's mail server emitted this string at this time") and unlike GitHub-public-issue URLs (which prove "this issue text was visible on a third-party platform"), an original-vulnerability certificate PDF from a national CERT body asserts a *substantive* finding by the issuing body: that the named contributor's submission was recorded as an original vulnerability disclosure. The certificate does not adjudicate vendor liability, exploit reachability, or patch mapping; per Track B standing disclaimer, none of those are asserted here either.
This is an issuing-body certificate from China's national vulnerability database/CNCERT. It records CNVD-2025-06744 as an original-vulnerability certificate exhibit for an Apple iOS / iPadOS buffer-overflow vulnerability and names Joseph Goydish as contributor.
+35 -45
View File
@@ -1,61 +1,51 @@
# CNVD-2025-07885 / CNVD-YCGO-202504012519 — Apple multi-product memory use-after-free vulnerability (Track B, Provisional)
# CNVD-2025-07885 / CNVD-YCGO-202504012519
> **Status:** Provisional. Upgraded from Stub on 2026-05-18 upon receipt of the issuing-body certificate PDF.
> **Track B standing disclaimer:** Filing and agency acknowledgement does not constitute adjudication of the underlying claims.
Apple multi-product memory-reuse certificate.
## My Role
## Status
**Original-vulnerability contributor**, per the literal text of the issued certificate (see "External Anchors" below). The certificate header reads 原创漏洞证明 ("Original Vulnerability Certificate") and identifies the contributor (贡献者) as **Joseph Goydish**, affiliated as 个人报送者 ("individual submitter / personal contributor"). This is a faithful translation of the document; it is not a self-characterization.
Anchor-grade CNVD/CNCERT certificate exhibit.
For the broader credit-asymmetry context that places this certificate in the Glass Cage flagship narrative, see "Cross-references" below.
This folder should be cited as a CNVD/CNCERT original-vulnerability certificate record naming Joseph Goydish as contributor.
## Affected Product / Vendor
## Certificate Facts
Apple multi-product (per certificate title: Apple多款产品) — vulnerability class: 内存释放后再利用漏洞 ("memory-release-then-reuse vulnerability", i.e. use-after-free / UAF), 通用—操作系统-高危 ("general — operating system — high severity"). Specific build range and patch mapping are not disclosed on the certificate itself and are withheld here pending vendor advisory or CVE assignment.
## Timeline
| Date | Event | External source / reference |
|---|---|---|
| 2025-04-22 | CNVD records submission; certificate `CNVD-YCGO-202504012519` issued | Issuing-body PDF (staged) |
| 2026-05-18 | Certificate PDF received in scaffold; folder upgraded Stub → Provisional | This README |
## External Anchors
- **Issuing body:** 国家信息安全漏洞共享平台 (China National Vulnerability Database, CNVD), under 国家互联网应急中心 / CNCERT (China's national CERT), with co-issuance line for 中国互联网协会网络与信息安全工作委员会 (Internet Society of China — Network & Information Security Committee). CNCERT is the sovereign CERT counterpart to US-CERT/CISA.
- **CNVD vulnerability identifier:** `CNVD-2025-07885` — sole-namespace, server-issued
- **CNVD original-vulnerability certificate number:** `CNVD-YCGO-202504012519` — sole-namespace, server-issued
- **Vulnerability-class designation on certificate:** 通用—操作系统-高危 (general / OS / high severity)
- **Contributor named on certificate (verbatim):** Joseph Goydish, 个人报送者 (personal contributor)
- **Date of record on certificate (verbatim):** `2025年04月22日` (printed under 收录时间 / "recording date")
- **Anchor class:** Tier 1 (sovereign-CERT certificate PDF). Promoted from Tier 0 stub on 2026-05-18.
| Field | Value |
| --- | --- |
| Issuing body shown on PDF | China National Vulnerability Database (CNVD), with CNCERT line |
| Certificate class shown on PDF | Original vulnerability certificate |
| CNVD vulnerability ID | CNVD-2025-07885 |
| Certificate number | CNVD-YCGO-202504012519 |
| Vulnerability label | Apple multi-product memory reuse |
| Severity class printed on PDF | General / operating system / high severity |
| Contributor printed on PDF | Joseph Goydish |
| Contributor affiliation printed on PDF | Individual submitter |
| Record date printed on PDF | 2025-04-22 |
## Evidence
| # | Artifact | Path (relative to this folder's `evidence/`) | SHA-256 | OTS | PGP |
|---|---|---|---|---|---|
| 1 | CNVD original-vulnerability certificate (issuing-body PDF) | `CNVD-2025-07885-YCGO-202504012519-Certificate-2025-04-22.pdf` | `d5bb17d5a27eabd32d272173116c90f89f12cdd912a26969115007383a7f21c8` | pending (batch 11 anchor script) | pending (batch 11 anchor script) |
| Artifact | Path | SHA-256 |
| --- | --- | --- |
| CNVD original-vulnerability certificate PDF | `evidence/CNVD-2025-07885-YCGO-202504012519-Certificate-2025-04-22.pdf` | `D5BB17D5A27EABD32D272173116C90F89F12CDD912A26969115007383A7F21C8` |
## Verification Steps
## Verification
1. Compute `sha256sum` of the staged PDF and confirm it matches the hash recorded above byte-for-byte.
2. After running `ANCHOR-COMMANDS-2026-05-18-batch10.sh`, the `.ots` proof binds the PDF's bytes to a Bitcoin-block timestamp post-dating the stamp time, and the `.asc` detached PGP signature binds the bytes to the filer's canonical key `4A04 1F50 6D89 4F5E E391 7438 6487 8B56 A2EB 2D11`.
3. CNVD vulnerability identifiers and certificate numbers are server-issued by CNCERT infrastructure and are not user-supplied; the sole-namespace property establishes that the issuance event could only have been originated by the issuing body.
4. The contributor name string "Joseph Goydish" appears rendered as embedded text in the PDF (extractable via standard PDF text extraction); no overlay or annotation layer is present.
```powershell
Get-FileHash -Algorithm SHA256 .\evidence\CNVD-2025-07885-YCGO-202504012519-Certificate-2025-04-22.pdf
```
## Cross-references
The hash must match the value above.
- **TRACK-B-CVE-2025-24085-24201-43300 (Glass Cage flagship #2):** The filer attests that the underlying technical material disclosed under CNVD-2025-07885 and CNVD-2025-06744 is the same body of work documented under the Glass Cage chain (CVE-2025-24085, CVE-2025-24201, CVE-2025-43300). Recorded as **filer attestation**, not as adjudicated finding. The credit-asymmetry pattern — Apple's advisories crediting other reporters for the underlying patches while CNCERT/CNVD issued formal original-vulnerability certificates to this filer — is documented in the Glass Cage README's "Apple's advisories credit other reporters" section.
- **TRACK-B-CNVD-2025-06744:** Sibling CNVD certificate, same issuing body, dated 2025-03-18, for an Apple iOS/iPadOS buffer-overflow vulnerability class. Both certificates were issued to the same contributor under the same affiliation string within a five-week window.
PDF text extraction confirms the certificate identifies:
## Disclosure Status
```text
CNVD-2025-07885
Apple multi-product memory reuse
Contributor: Joseph Goydish
Certificate: CNVD-YCGO-202504012519
Record date: 2025-04-22
```
Coordinated through CNVD's standard intake. The certificate's existence establishes that CNCERT recorded and accepted the submission as an original-vulnerability contribution. No vendor advisory or matching CVE-ID cross-reference is asserted on the certificate itself; any such mapping is the filer's attested context, not an issuing-body finding.
## Weight
## Safety Notes
No exploit payload, no PoC, no weaponized technical detail is staged in this folder or referenced in this README. The artifact is the issuing-body certificate document, nothing more. Vulnerability-class language ("memory-release-then-reuse" / use-after-free) is reproduced solely as it appears verbatim on the certificate.
## Anchor-class commentary
Per the same framing as the sibling folder: this is a **sovereign-CERT original-vulnerability certificate** anchor — a substantively different evidentiary class from DKIM-signed acknowledgement emails or GitHub-public-issue URL snapshots. The issuing body asserts the contributor was recorded as an original-vulnerability submitter; the certificate does not adjudicate vendor liability, exploit reachability, or patch mapping; per Track B standing disclaimer, none of those are asserted here either.
This is an issuing-body certificate from China's national vulnerability database/CNCERT. It records CNVD-2025-07885 as an original-vulnerability certificate exhibit for an Apple memory-reuse vulnerability and names Joseph Goydish as contributor.