Siemens Mobile Phone SMS Denial of Service Vulnerability
BID:3870
Info
Siemens Mobile Phone SMS Denial of Service Vulnerability
| Bugtraq ID: | 3870 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2002-0122 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 13 2002 12:00AM |
| Updated: | Jul 11 2009 09:56AM |
| Credit: | Posted to BugTraq by <[email protected]> of Xfocus. |
| Vulnerable: |
Siemens 3568i WAP |
| Not Vulnerable: |
Siemens SL45/6688 |
Discussion
Siemens Mobile Phone SMS Denial of Service Vulnerability
Some Siemens produced mobile phones suffer from a vulnerability in their handling of SMS messages. If a maliciously formed SMS message contains certain unusual characters, the mobile phone will be unable to display or delete this message. If enough messages are sent, SMS functionality may be completely denied.
Earlier Siemens mobile phone products may share this vulnerability.
Some Siemens produced mobile phones suffer from a vulnerability in their handling of SMS messages. If a maliciously formed SMS message contains certain unusual characters, the mobile phone will be unable to display or delete this message. If enough messages are sent, SMS functionality may be completely denied.
Earlier Siemens mobile phone products may share this vulnerability.
Exploit / POC
Siemens Mobile Phone SMS Denial of Service Vulnerability
The following exploit has been provided by benjurry <[email protected]> of Xfocus. The content of this file has not been verified by SecurityFocus, and should be trusted accordingly.
The following exploit has been provided by benjurry <[email protected]> of Xfocus. The content of this file has not been verified by SecurityFocus, and should be trusted accordingly.