BlackBerry < 6.0.0 Browser Partial DoS

medium Nessus Plugin ID 70135

Synopsis

The browser on the Blackberry device has a denial of service vulnerability.

Description

Blackberry devices older than 6.0.0 are vulnerable to a broswer denial of service vulnerability. The vulnerability can be triggered when the browser visits a malicious web page causing the browser to become unresponsive. The browser will restart automatically after a short period of time.

Solution

BlackBerry has released an OS update that addresses this issue.

See Also

http://www.nessus.org/u?2a4422c8

http://www.nessus.org/u?3ee86373

Plugin Details

Severity: Medium

ID: 70135

File Name: blackberry_600_check.nbin

Version: 1.95

Type: local

Published: 9/26/2013

Updated: 9/4/2024

Supported Sensors: Nessus

Risk Information

VPR

Risk Factor: Low

Score: 3.4

CVSS v2

Risk Factor: Medium

Base Score: 4.3

Temporal Score: 3.6

Vector: CVSS2#AV:N/AC:M/Au:N/C:N/I:N/A:P

CVSS Score Source: CVE-2010-2599

Vulnerability Information

CPE: cpe:/o:blackberry:blackberry_os

Required KB Items: mdm/dependency/unlocked

Exploit Available: true

Exploit Ease: Exploits are available

Patch Publication Date: 1/11/2011

Vulnerability Publication Date: 1/11/2011

Reference Information

CVE: CVE-2010-2599

BID: 45754