Nokia GGSN Kernel Panic Denial of Service Vulnerability
BID:7854
Info
Nokia GGSN Kernel Panic Denial of Service Vulnerability
| Bugtraq ID: | 7854 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2003-0368 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 09 2003 12:00AM |
| Updated: | Jul 11 2009 10:06PM |
| Credit: | Discovery is credited to Ollie Whitehouse, Joe Grand, and Brian Hassick. |
| Vulnerable: |
Nokia GGSN (IP650 based) Release 1 |
| Not Vulnerable: |
Nokia GGSN (IP650 based) Release 2 |
Discussion
Nokia GGSN Kernel Panic Denial of Service Vulnerability
Nokia GGSN devices are reported to be prone to a denial of service vulnerability. Sending specifically malformed IP packets to the device over a cellular phone will cause a kernel panic causing the device to shut down.
Nokia GGSN devices are reported to be prone to a denial of service vulnerability. Sending specifically malformed IP packets to the device over a cellular phone will cause a kernel panic causing the device to shut down.
Exploit / POC
Nokia GGSN Kernel Panic Denial of Service Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
Nokia GGSN Kernel Panic Denial of Service Vulnerability
Solution:
Nokia has reportedly contacted affected customers and provided a fix. Affected users running vulnerable systems should contact Nokia for fix information.
Solution:
Nokia has reportedly contacted affected customers and provided a fix. Affected users running vulnerable systems should contact Nokia for fix information.
References
Nokia GGSN Kernel Panic Denial of Service Vulnerability
References:
References:
- Nokia Gateway GPRS Support Node (GGSN) (Nokia)
- Nokia GGSN (IP650 Based) DoS ("@stake Advisories"
)