Radware Discovers Denial-of-Service Vulnerability in Apples' iPhone Safari Internet Browser
Welcome to TMCnet.com
TMC Launches New Web Sites: Cable WiMAX   |    ITEXPO West begins in:   Register Now!
Columnists:
E-mail this page to a friend Order reprints online Print this page Bookmark this page Free magazines Free newsletters RSS-XML alerts
Digg this article!

TMCNet:  Radware Discovers Denial-of-Service Vulnerability in Apples' iPhone Safari Internet Browser

[April 15, 2008]

Radware Discovers Denial-of-Service Vulnerability in Apples' iPhone Safari Internet Browser

MAHWAH, New Jersey, April 15 /PRNewswire-FirstCall/ -- Radware , the leading provider of integrated application delivery solutions for business-smart networking, today announced that the vulnerability research team of its Security Operations Center discovered a denial of service (DoS) vulnerability in the Safari Browser of Apples' iPhone version 1.1.4. Immediate protection is available as part of Radware's Security Update Service (SUS), safeguarding customer infrastructures in advance of public disclosure of the flaw.



To exploit the vulnerability, an iPhone user must open an HTML page which contains Javascript that manifests this vulnerability, which can be achieved by Social Engineering (e.g. Spam Mail, Spam SMS). The user will experience an application level DoS which results in crashing the Safari browser and which could go as far as crashing the entire iPhone appliance.

"While vendors are struggling to push new products and applications, it is evident that security still remains a secondary concern," says Itzik Kotler, Security Operation Center Manager, Radware. "Hackers continue to misappropriate other people's software and their job is made easier by design flaws embedded into software products."



Apple iPhone Safari browser is vulnerable to DoS attacks due to a design flaw that may be triggered by a series of memory allocation operations on the dynamic memory pool, which in turn triggers a bug in the garbage collector. The security hole is currently unpatched, leaving iPhone owners vulnerable to potential attacks until Apple issues a security update.

About Radware
Radware , the global leader in integrated application delivery solutions, assures the full availability, maximum performance, and complete security of business-critical applications for more than 5,000 enterprises and carriers worldwide. With APSolute(TM), Radware's comprehensive and award-winning suite of intelligent front-end, access, and security products, companies in every industry can drive business productivity, improve profitability, and reduce IT operating and infrastructure costs by making their networks "business smart." For more information, please visit http://www.radware.com/.

This press release may contain forward-looking statements that are subject to risks and uncertainties. Factors that could cause actual results to differ materially from these forward-looking statements include, but are not limited to, general business conditions in the Application Switching or Network Security industry, changes in demand for Application Switching or Network Security products, the timing and amount or cancellation of orders and other risks detailed from time to time in Radware's filings with the Securities and Exchange Commission, including Radware's Form 20-F.

Media Relations:
Joyce Anne Shulman
+1-201-785-3209
joyceannes@radware.com

Radware Ltd

CONTACT: Media Relations: Joyce Anne Shulman, +1-201-785-3209,joyceannes@radware.com

[ Back To TMCnet.com's Homepage ]


Digg this article!

Discussions:
Be the first to post a comment on this page!
 
By  
TMCnet

Featured White Papers  |  Featured White Papers from White Paper Library, research using the library of white papers for the latest white papers
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------
----------------


E-mail this page to a friend Order reprints online Print this page Bookmark this page Free magazines Free newsletters RSS-XML alerts
  2008 TMC Labs Innovation Award Winners Announced Presented By INTERNET TELEPHONY Magazine
  White Paper Library Re-Launched On TMCnet
  Introducing the 2008 IPTV Excellence Award Presented by INTERNET TELEPHONY Magazine
  TMCnet Welcomes New Columnist Peter Brockmann
  INTERNET TELEPHONY Conference & EXPO West 2008 Exhibit Hall Nearing Capacity for Fall Event
  Customer Interaction Solutions Announces 2008 IP Contact Center Technology Pioneer Award Winners
  Customer Interaction Solutions Magazine Names Brendan B. Read Senior Contributing Editor
  TMC Schedules Internet Telephony Conference & Expo West 2008
  PIKA Technologies Launches Telephony Hardware Community on TMCnet
  Announcing the 2007 Product of the Year Award Winners Presented by Communications Solutions
  Last Call for Speech Technology Excellence Award Entries
  TMC Schedules Internet Telephony Conference & Expo West 2008
  TMCnet Welcomes New Columnist Matt Bancroft
  TMC Launches WiMAXtoday.TMCnet.com
  2008 TMC Labs Innovation Award Winners Announced by Unified Communications Magazine
  TMCnet Welcomes Rick Bye as Newest Columnist
  TMC Names Best of Show Winners of INTERNET TELEPHONY Conference & EXPO East 2008
  Interactive Intelligence Receives Record Page Views on Highest Trafficked Contact Center Site on the Web