Re: [Full-Disclosure] Nokia 3560 Remote DOS

From: Milan 't4c' Berger (t4c_at_ghcif.de)
Date: 07/08/04

  • Next message: Xavier Beaudouin: "Re: [Full-Disclosure] shell:windows command question"
    To: full-disclosure@lists.netsys.com
    Date: Thu, 08 Jul 2004 11:26:05 +0200
    
    

    You can get updates for money.
    Here in germany you pay about 20 Euro for updating firmware, but like
    old bugs told us, Nokia doesn't really care about there mistakes.

    Regards,
         Milan

    Kane Lightowler wrote:
    > Even if Nokia does find this out first there is not to much they can do.
    >
    > They can create a fix for a new firmware edition that will ship in new models but most models that are out in the public already will never get a firmware update.
    >
    >
    > Regards,
    > Kane
    >
    >
    >>-----Original Message-----
    >>From: full-disclosure-admin@lists.netsys.com
    >>[mailto:full-disclosure-admin@lists.netsys.com]On Behalf Of
    >>marklist@comcast.net
    >>Sent: Thursday, July 08, 2004 1:43 PM
    >>To: full-disclosure@lists.netsys.com
    >>Subject: [Full-Disclosure] Nokia 3560 Remote DOS
    >>
    >>
    >>Hello list,
    >>
    >> I have found a vulnerability with Nokia's 3560 cellular
    >>phone, in which anyone may remotely crash the phone's OS,
    >>requiring the user to disconnect the battery to restore
    >>normal functionality. The attack only requires sending the
    >>person a specially crafted text message. This can be done
    >>very easily via e-mail or from any capable cell phone.
    >>
    >>I have only tested this on the 3560, but other models may be
    >>vulnerable as well.
    >>
    >>During the attack, the phone does not emit a "new message"
    >>tone, and the message does not get stored in phone after
    >>rebooting. Victims have no way of knowing that they have
    >>been attacked.
    >>
    >>I know this is FD and all, but due to the seriousness of this
    >>attack, I would like to notify Nokia before posting full details.
    >>
    >>Does anyone know of a security contact at Nokia?
    >>
    >>-Mark

    -- 
    Milan 't4c' Berger
    Network & Security Administrator
    21073 Hamburg
    gpg: http://www.ghcif.de/keys/t4c.asc
    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html
    

  • Next message: Xavier Beaudouin: "Re: [Full-Disclosure] shell:windows command question"

    Relevant Pages

    • Re: Webramp 700S
      ... there were a few more firmware releases for it after Nokia stopped ... If you don't have the Registration Code, you might try giving Sonic support ...
      (comp.security.firewalls)
    • Re: Unlock Orange Nokia 6680?
      ... or are those unlocking websites any use? ... the nokia website. ... And that will unlock the phone how exactly? ... Will only change firmware ...
      (uk.telecom.mobile)
    • Re: Wassup darlin, I bin keeping my eye on your PWB
      ... Nokia Customer Support - I'm not the first to complain about poor customer ... Fuck you, Nokia. ... your operator hasn't released a firmware with the fixes in, ... with the two N-gage models the firmware flash isn't an end-user ...
      (uk.games.video.misc)
    • Re: 6680 Firmware (Again)
      ... let me get this straight - CRC flashed my phone with a standard ... >> Nokia firmware which meant I lost the use of my ALS? ...
      (uk.telecom.mobile)
    • Re: Wassup darlin, I bin keeping my eye on your PWB
      ... Nokia Customer Support - I'm not the first to complain about poor customer ... your operator hasn't released a firmware with the fixes in, ... with the two N-gage models the firmware flash isn't an end-user ...
      (uk.games.video.misc)