[29166] in bugtraq

home help back first fref pref prev next nref lref last post

RE: Siemens *35 and 45 series phones SMS Danial of Service

daemon@ATHENA.MIT.EDU (Willis Johnson)
Tue Mar 4 15:13:04 2003

Content-class: urn:content-classes:message
MIME-Version: 1.0
Content-Type: text/plain;
	charset="us-ascii"
Date: Mon, 3 Mar 2003 15:28:57 -0800
Message-ID: <0F13C84824C85F41B39F77355CCDB8E90497B346@red-msg-09.redmond.corp.microsoft.com>
From: "Willis Johnson" <willisj@microsoft.com>
To: <bugtraq@securityfocus.com>
Content-Transfer-Encoding: 8bit

What happens if the string is sent repeatedly while the phone is turned
on but is unattended or receives text messages silently? Is the battery
drained as predicted? 

Willis

-----Original Message-----
From: Jan Niehusmann [mailto:jan@gondor.com] 
Sent: Monday, March 03, 2003 2:46 PM
To: subj subj
Subject: Re: Siemens *35 and 45 series phones SMS Danial of Service


On Mon, Mar 03, 2003 at 01:06:43AM -0000, subj subj wrote:
>  To vulnerability are subject: All versions siemens *35 and *45.
[...]
>  languages from the phone language selection menu, will  completely 
> disable *35 series phones and result  in a 2 minute read delay on *45 
> series phones. Note that

Please note that this vulnerability isn't as serious as you describe it.
At least on my S45, I am able to interrupt this 2 minute delay at any
time by pressing the 'hang up' key (but I have to press it for about
half a second instead of just hitting it), the message can be read by
using 'edit message' instead of 'read message', and it can be deleted
without problems.

So while this obviously is a bug, it can hardly be called a DoS.

Jan


home help back first fref pref prev next nref lref last post