Select local site

F-Secure Vulnerability Information :
Microsoft Windows Mobile Bluetooth Device Name Denial of Service

[Summary] | [Detailed Description] | [Solution] | [CVE Reference]

Report ID:SA32066
Source:Secunia
Date of Discovery:03.10.2008
Criticality:Low
Affects:

Microsoft Windows Mobile 6.x

Compromise From:From remote
Compromise Type:DoS
Summary

A vulnerability has been reported in Microsoft Windows Mobile, which can be exploited by malicious people to cause a DoS (Denial of Service).

Back to the Top

Detailed Description

A vulnerability has been reported in Microsoft Windows Mobile, which can be exploited by malicious people to cause a DoS (Denial of Service).

The vulnerability is caused due to an error in the handling of advertised Bluetooth device names. This can be exploited to trigger a device reboot by setting up a Bluetooth device with an overly long name, in the range of the vulnerable device.

Back to the Top

Solution

Disable Bluetooth support.

Back to the Top

CVE Reference
Back to the Top

F-Secure Corporation