PalmOS TCP Scan Remote Denial Of Service Vulnerability

PalmOS is the commercial handheld software maintained and distributed by Palm. It is available for Personal Desktop Assistants (PDAs) manufactured by various vendors.

Some network-accessible PDAs become unstable when receiving a large amount of TCP connect() requests. Under some circumstances, when a PDA receives a large amount of connect() requests via some vector such as a TCP scan, the device becomes unstable. Often, this results in a crash, and requires resetting the device to resume normal operation. This problem is known to affect Handspring PDAs using PalmOS 3.5h and Xircom wireless ethernet adapters, as well as some Palm Vx PDAs.


Privacy Statement
Copyright 2010, SecurityFocus