CVE-2007-3351: High severity Microsoft Windows Mobile vulnerability
The SJPhone SIP soft phone 1.60.303c, when installed on the Dell Axim X3 running Windows Mobile 2003, allows remote attackers to cause a denial of service (device hang and traffic amplification) via a direct crafted INVITE transaction, which causes the phone to transmit many RTP packets.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2007-3351?
CVE-2007-3351 is categorized as a denial of service vulnerability, which allows attackers to hang the device and amplify traffic.
How do I fix CVE-2007-3351?
To mitigate CVE-2007-3351, consider updating or uninstalling the SJPhone software, as there are no specific patches available.
Which devices are affected by CVE-2007-3351?
CVE-2007-3351 specifically affects the SJPhone version 1.60.303c installed on Dell Axim X3 devices running Windows Mobile 2003.
What type of attack does CVE-2007-3351 involve?
CVE-2007-3351 involves a remote denial of service attack through a crafted SIP INVITE transaction.
Can CVE-2007-3351 be exploited remotely?
Yes, CVE-2007-3351 can be exploited remotely, allowing attackers to cause a denial of service on the affected devices.