DoS attack on SonyEricsson phones
A remote user may make a DoS attack due to an error while processing WAP push packets.
A denial of service can be caused by a specially formed SMS message or UDP packet sent to port 2948 (in this case, one packet can be used to attack a large number of devices).
An attack results in a reboot or abnormal shutdown.
In order to restore the normal operation of the phone, you need to remove the battery from it (well, and then insert it back :)) As it turned out from the video , this can not be done. An
attacker can send several identical SMS messages in order to extend the denial of service.
Vulnerability testing was successfully carried out on the models:
Other devices on the same (or earlier) platform may also be vulnerable (thanks to the user NeGO for reminding me - when I wrote this article I forgot to mention)
There are no ways to solve the problem.
Source : www.mseclab.com/index.php?page_id=123
upd: YouTube demo
A denial of service can be caused by a specially formed SMS message or UDP packet sent to port 2948 (in this case, one packet can be used to attack a large number of devices).
An attack results in a reboot or abnormal shutdown.
attacker can send several identical SMS messages in order to extend the denial of service.
Vulnerability testing was successfully carried out on the models:
- W910i
- W660i
- K618i
- K610i
- Z610i
- K810i
- K660i
- W880i
- K530i
Other devices on the same (or earlier) platform may also be vulnerable (thanks to the user NeGO for reminding me - when I wrote this article I forgot to mention)
There are no ways to solve the problem.
Source : www.mseclab.com/index.php?page_id=123
upd: YouTube demo