First published: Sat Dec 31 2005(Updated: )
Research in Motion (RIM) BlackBerry Handheld web browser for BlackBerry Handheld before 4.0.2 allows remote attackers to cause a denial of service (hang) via a Java Application Description (JAD) file with a long application name and vendor string, which prevents a browser dialog from being properly dismissed.
Credit: cret@cert.org
Affected Software | Affected Version | How to fix |
---|---|---|
BlackBerry Desktop Software | =4.0 | |
BlackBerry Device Software | =4.0 | |
RIM Blackberry 7270 | =7230_3.8 | |
RIM Blackberry 7270 | =7780 | |
RIM Blackberry 7270 | =7750 | |
RIM Blackberry 7270 | =7105t | |
RIM Blackberry 7270 | =7100t | |
RIM Blackberry 7270 | =7290 | |
RIM Blackberry 7270 | =7100i | |
RIM Blackberry 7270 | =8700c | |
RIM Blackberry 7270 | =7100v | |
RIM Blackberry 7270 | =7100r | |
RIM Blackberry 7270 | =7230_4.0 | |
RIM Blackberry 7270 | =7100x | |
RIM Blackberry 7270 | =7230_3.7.1_.41 | |
RIM Blackberry 7270 | =7250 | |
RIM Blackberry 7270 | =8700f | |
RIM Blackberry 7270 | =7730 | |
RIM Blackberry 7270 | =7100g | |
RIM Blackberry 7270 | =7280 | |
RIM Blackberry 7270 | =8700r | |
RIM Blackberry 7270 | =7520 | |
RIM Blackberry 7270 | =7130e |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2005-2343 is classified as a denial of service vulnerability.
To fix CVE-2005-2343, upgrade to BlackBerry Handheld software version 4.0.2 or later.
CVE-2005-2343 is caused by a long application name and vendor string in a Java Application Description (JAD) file.
CVE-2005-2343 affects various BlackBerry handheld devices running versions prior to 4.0.2.
The impact of CVE-2005-2343 on users is that it can cause their devices to hang, resulting in denial of service.