CVE-2008-4295

Microsoft Windows Mobile 6.0 on HTC Wiza 200 and HTC MDA 8125 devices does not properly handle the first attempt to establish a Bluetooth connection to a peer with a long name, which allows remote attackers to cause a denial of service (device reboot) by configuring a Bluetooth device with a long hci name and (1) connecting directly to the Windows Mobile system or (2) waiting for the Windows Mobile system to scan for nearby devices.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:microsoft:windows_mobile:6.0:*:*:*:*:*:*:*
OR cpe:2.3:h:htc:mda:8125:*:*:*:*:*:*:*
cpe:2.3:h:htc:wiza:200:*:*:*:*:*:*:*

Information

Published : 2008-09-27 03:30

Updated : 2017-09-28 18:32


NVD link : CVE-2008-4295

Mitre link : CVE-2008-4295


JSON object : View

CWE
CWE-20

Improper Input Validation

Advertisement

dedicated server usa

Products Affected

microsoft

  • windows_mobile

htc

  • mda
  • wiza