JPG hole cuts RAZR open
Motorola handset vulnerable
Posted in Software & Security, 28th May 2008 11:54 GMT
Free whitepaper – What Exchange can't do - and Dell can
A bug in Motorola's RAZR firmware could allow a malformed JPG file sent over MMS to overflow the stack, theoretically making it able to execute arbitrary code.
The exploit is hypothetical, and would be very hard to abuse, but it's still a serious enough prospect for Motorola to issue a fixed firmware download – even if it's taken them the best part of a year to do so.
The problem is in the EXIF parser, which extracts additional data from a JPG file when it's received. Exchangable Image File Format is a set of tags that can be embedded in image files, such as the location where the image was taken or the camera used to take it.
The problem was reported to the TippingPoint Zero Day Initiative back in October last year, and they informed Motorola at the time but kept the details to themselves until a fix was available. ®
Free whitepaper – Managing desktop software for fun and profit
The Register Agile Data Center Summit
New storage architectures make SSDs more cost-effective
Dell PowerEdge R710 solution with VMware ESX vs. Dell PowerEdge 2850 solution

Sign up, sign up for The Register IT security newsletter
Microsoft's Windows 7 price gamble - and why it's flawed
Managing Desktop Software for fun and profit
Intel's flash new SSDs hit by bugs