Malicious image opens security hole in RAZR

By Elinor Mills on 29 May 2008

Tags: image | jpeg | mobile phone | motorola | razr | virus | vulnerable | accept

If you use a Motorola RAZR mobile phone, don't accept JPEGs from strangers.

A vulnerability has been discovered in the phones that could allow a hacker to send a corrupt JPEG image via Multimedia Messaging Service that could be leveraged to run malicious code on the phone. However, you would have to accept the image for download before that could happen.

The specific flaw exists in the JPEG thumbprint component of the EXIF parser, according to an advisory released by security firm TippingPoint's Zero Day Initiative on Tuesday.

"Although the possibility of this vulnerability occurring is very remote," Motorola has fixed the vulnerability in all new releases of the Razr and urges people with older devices to download the latest software from its Web site, the advisory said.

The vulnerability was reported to Motorola last June.

Like this article? Click below to send it to your mobile for free!

Be the first to comment on this article!

  • Leave a comment

All fields marked with * are required

What do you think

Your e-mail will not be displayed

You must read and type the 6 chars within 0..9 and A..F

You must read and type the 6 chars.


  • Google adds Android app for Flickr photos

  • Star Tech: Matt Welsh

  • Nokia 6210 Navigator

  • Freshtel plans Aussie mobile VoIP

  • HTC Dream spy shots

  • Photoshop.com on Windows Mobile devices

  • Tethering coming soon to iPhone 3G?

  • Android Developer Challenge winners focus on location

  • iiNet to offer mobile phone services?

More articles »

Find the right mobile phone

Brand
  • Multiple options can be selected

    The Explain Series

    Recycle your old mobiles
    • Nokia 6210 Navigator

      Nokia 6210 Navigator

      While the 6210 is solidly built and features fast performance, the lack of a lifetime subscription to turn-by-turn navigation robs the Navigator of what should make it unique in the market.

    • Motorola RAZR2 V9 Ferrari Special Edition

      Motorola RAZR2 V9 Ferrari Special Edition

      There's nothing technically wrong with RAZR2 V9 Ferrari Special Edition but if you want to Ferrari-fie your phone there are cheaper and better ways of doing it. For free.

    • Nokia N85

      Nokia N85

      It's hard to knock a phone that has all the current popular technologies, but it would have still been great for Nokia to consider new technologies for this latest N-Series range, particularly a media sharing networking protocol.

    • LG KF390

      LG KF390

      Take out the Next G reception and you end up with a low quality handset at a mid-range price point. Still, it's great to see another blue tick phone for our friends in the bush to consider.

    • Nokia E66

      Nokia E66

      While we like the E71 better, the E66 is a great smartphone with class leading features. If you want the functionality of a business phone without the bulk of a PDA form factor, the E66 is the phone you've been looking for.

    More reviews »

    Membership benefits

    Create a personalised homepage

    Create a personalised homepage

    Choose your interests from our 16 categories and only see articles relevant to you. Sign up for a free CNET.com.au membership now!