Security-X

Forum Security-X => News => Discussion démarrée par: igor51 le septembre 07, 2017, 11:03:40

Titre: [Trend]CVE-2017-0780: Denial-of-Service Vulnerability can Crash Android Messages App
Posté par: igor51 le septembre 07, 2017, 11:03:40
CVE-2017-0780: Denial-of-Service Vulnerability can Crash Android Messages App

Just about anyone can appreciate a good old meme GIF every now and then, but what if one caused your Android Messages to crash?


A denial-of-service vulnerability we recently disclosed to Google can do exactly that and more. Designated as CVE-2017-0780, we’ve confirmed it to be in the latest Nexus and Pixel devices. The security flaw can let attackers illicitly and remotely crash their victims’ Android Messages app by sending a malformed multimedia message (MMS). The app will also be incapable of recovering from the crash even if the device/system is rebooted or booted in safe mode.


Post from: Trendlabs Security Intelligence Blog - by Trend Micro


CVE-2017-0780: Denial-of-Service Vulnerability can Crash Android Messages App


Source: CVE-2017-0780: Denial-of-Service Vulnerability can Crash Android Messages App (http://feeds.trendmicro.com/~r/Anti-MalwareBlog/~3/8WGcgLXoMuk/)