Saturday March 20, 2010 1:36 AM AEST
Skip Navigation LinksPC Authority > News > iPhone vulnerable to DoS attack
NEWS

iPhone vulnerable to DoS attack

by  on Apr 17, 2008
Tags: iPhone | vulnerable | to | DoS | attack

Apple's mobile browser flawed, claims security firm.

A security firm claims to have uncovered a denial-of-service vulnerability in version 1.1.4 of Apple's Safari web browser for the iPhone.

Radware said that the phone is vulnerable to DoS attacks owing to a design flaw that may be triggered by a series of memory allocation operations on the dynamic memory pool, which in turn triggers a bug in the garbage collector.

"While vendors are struggling to push new products and applications, it is evident that security still remains a secondary concern," said Itzik Kotler, security operation centre manager at Radware.

"Hackers continue to misappropriate other people's software and their job is made easier by design flaws embedded into software products."

To exploit the vulnerability, an iPhone user must open an HTML page which contains JavaScript that manifests this vulnerability.

Once at the site, an application-level DoS attack crashes the Safari browser and could go as far as crashing the iPhone completely.

Users could be lured to sites containing this attack via links in spam messages or other social engineering techniques.

It is unclear whether the fault can cause any permanent damage to the phone or is simply a nuisance.

Copyright ©v3.co.uk
APRIL PC AUTHORITY - ON SALE NOW
In our AMD vs Intel CPU megatest we rate 50 of the best on the market - from budget to performance.
15 Internet Security Software packages get a going over in our 'torture test'.
Plus, we look at what works and what fails in MS Office 2010 and tell you how to try it - for free.
Email a Friend Email this
Print Page Print this
Tweet This Tweet this
Feedback Send us your tips


Ads by Google

Comments

Be the first to comment on this article.
Thoughts on this article? Add a comment below.
Login or register to submit a comment.
 

Top Stories

Not in Australia, the innovative technologies you won't find here: paying with RFID
Paying for our goods with RFID technology might seem risky, but in some countries it's already commonplace. Can RFID payments be more than just an e-toll solution in Australia?
 
Vintage Tech: Looking back at 3DFX Voodoo
3DFX's technology was groundbreaking for its time, but the company is little but an Nvidia afterthought these days. What gave the Voodoo its special magic?
 
That pesky "water damage" phone issue: getting repairs could be tricky
Readers were telling us that repairers were claiming "water damage" as a reason for refusing to repair their phones. So what are your rights in this situation?
 


 
1) Apple iPhone 3GS 16GB36 plans 9%
2) Nokia E7228 plans 1%
3) Nokia E7147 plans 2%
4) Nokia N9740 plans 6%
5) Apple iPhone 8GB43 plans 7%
1) Netspace36 plans 7%
2) Telstra BigPond30 plans 11%
3) 37 plans 6%
4) iiNet32 plans 1%
5) Optus41 plans 6%

Mobiles | Broadband | Credit Cards

Haymarket - PC Authority