1. Skip to navigation
  2. Skip to content
  3. Skip to secondary-content




Microsoft Windows Mobile Bluetooth Device Name Denial of Service

Report ID: SA32066
Source: Secunia
Date of Discovery: 03.10.2008
Criticality: Low
Affects:
Microsoft Windows Mobile 6.x

Compromise From: From remote
Compromise Type: DoS

Summary

A vulnerability has been reported in Microsoft Windows Mobile, which can be exploited by malicious people to cause a DoS (Denial of Service).

Detailed Description

A vulnerability has been reported in Microsoft Windows Mobile, which can be exploited by malicious people to cause a DoS (Denial of Service).

The vulnerability is caused due to an error in the handling of advertised Bluetooth device names. This can be exploited to trigger a device reboot by setting up a Bluetooth device with an overly long name, in the range of the vulnerable device.

Solution

Disable Bluetooth support.