OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: Siemens *35 and 45 series phones SMS Danial of Service

From: Andreas Hofmeister (andisolutions.pyramid.de)
Date: Mon Mar 03 2003 - 18:33:10 CST


Jan Niehusmann wrote:

>On Mon, Mar 03, 2003 at 01:06:43AM -0000, subj subj wrote:
>
>
>> To vulnerability are subject: All versions siemens *35 and *45.
>>
<snip>

> the message can be read by using
>'edit message' instead of 'read message', and it can be deleted without
>problems.
>
>So while this obviously is a bug, it can hardly be called a DoS.
>

An S35 locks up *completly* when one attemps to read the message -
worse: you had to read the message (wich is not possible) before you
could delete it, there is no edit option in the message list. Regarding
the S35 it really is a DoS.

Ciao
  Andreas