Another webOS 1.1 Security Vulnerability Found

webos security vulnerabilityAre you stuck in the past? A nostalgic tragic? Still running webOS v1.1, despite Palm's best efforts to automagically bring you into the present? You really might want to consider pulling the trigger on that 1.2.1 update: another security vulnerability has been discovered in 1.1, by security guru Townsend Ladd Harris. (You may remember him from such other security scares as the popular "Remote File Access" breach.)

The bug this time centers around a floating point exception crash: if an attacker crafts a web page in just the right way, they can crash the Pre's Luna system and force a Luna restart. As Ladd mentions, the risk here is of a denial-of-service attack. So please, if you know what's good for you: update your webOS, people.

Article Comments

 (1 comment)

The following comments are owned by whoever posted them. PalmInfocenter is not responsible for them in any way.
Please Login or register here to add your comments.

Start a new Comment Down

Heads Up!

SeldomVisitor @ 11/21/2009 1:11:16 PM # Q
WebOS has a built-in file-wiper virus!

Well..okay...maybe it's not a virus but a TROJAN!

Well...okay..maybe its just bad programming, eh?

But what's the difference?

http://www.engadget.com/2009/11/21/palm-pre-backups-can-be-easily-overwritten-by-a-replacement-devi/

Reply to this comment
Start a New Comment Thread Top

Account

Register Register | Login Log in
user:
pass: