Jump to content

Some ROMs may be vulnerable to the recent web browser hard-reset exploit.


Recommended Posts

Guest omegavesko
Posted (edited)

The recent hard-reset exploit from the SGS3 seems to be a vulnerability on other phones/ROMs as well.

You can check for it here: http://hugelaser.com...t.php?conf=true

If your phone displays your IMEI like in the image, you're vulnerable. Mine was taken in AOKP-CM9 Remix.

Q8tAb.png

Edited by omegavesko
Posted (edited)

It says that non-samsung phones are not vulnerable no matter what result is.

Anyway all roms based on 4.0.4 will have the same results since tbey use the same browser (webcore)

Edited by C3C0
Guest omegavesko
Posted

It says that non-samsung phones are not vulnerable no matter what result is.

Anyway all roms based on 4.0.4 will have the same results since tbey use the same browser (webcore)

That's true, since the hard reset code/number is Samsung-specific. Either way, automatically executing/calling tel: markup when embedded into an iframe is rather troubling.

Please sign in to comment

You will be able to leave a comment after signing in



Sign In Now
×
×
  • Create New...

Important Information

By using this site, you agree to our Terms of Use.