Vulnerability Development mailing list archives

Re: Exploit code for PalmOS


From: phr () DOC IC AC UK (Philip Rowlands)
Date: Thu, 15 Jun 2000 16:40:51 +0100


Darren Moffat - Solaris Sustaining Engineering wrote:

Does anyone here has exploit code (or shell code) for Palm OS? We're looking
to develop a proof of concept exploit.
If there's anybody on this list that have something like that (or think they
are able to develop something like that) please drop me a note.

What would you be wanting to exploit ?  There is no security mechanisms
under PalmOS.  If you have access to the device you can do what you like
to it.

IIRC, the Palm defaults to "Beam Receive On", in order to receive
electronic address cards, applications etc. It may be possible to
transmit a malformed address card to cause the Palm to crash or lose
data.

Phil


Current thread: