summaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorhellekin <hellekin@dyne.org>2016-08-12 06:52:34 +0000
committerhellekin <hellekin@dyne.org>2016-08-12 06:52:34 +0000
commit9bb46139491e82597d44f914f6e96592ce12edae (patch)
treea416a9b447910bc95f1c2df2fedec10fb1585532
parent912caca4874dd31ad03848c3c094bf8f1de88175 (diff)
downloadwww-9bb46139491e82597d44f914f6e96592ce12edae.tar.gz
www-9bb46139491e82597d44f914f6e96592ce12edae.tar.bz2
www-9bb46139491e82597d44f914f6e96592ce12edae.zip
Shorter answer
-rw-r--r--content/0022-about-the-asn.1-vulnerability.html10
1 files changed, 7 insertions, 3 deletions
diff --git a/content/0022-about-the-asn.1-vulnerability.html b/content/0022-about-the-asn.1-vulnerability.html
index e97937f..506f025 100644
--- a/content/0022-about-the-asn.1-vulnerability.html
+++ b/content/0022-about-the-asn.1-vulnerability.html
@@ -30,10 +30,10 @@
System">OS</abbr>) to access anything else on the system, and
preventing remote activation of the chip in the first place.</p>
- <p>Lucas Molas of <em>Programa STIC</em> discovered a <cite>Heap
+ <p>Lucas Molas of <em>Programa STIC</em> discovered a <q>Heap
memory corruption in <abbr title="Abstract Syntax Notation
One">ASN.1</abbr> parsing code generated by Objective Systems
- Inc. ASN1C compiler for C/C++</cite> potentially affecting
+ Inc. ASN1C compiler for C/C++</q> potentially affecting
billions of phone users worldwide.
<q cite="http://www.itu.int/en/ITU-T/asn1/Pages/Application-fields-of-ASN-1.aspx">
<abbr>ASN.1</abbr> is used in many protocols and data formats,
@@ -79,10 +79,14 @@
<h2>How is Neo900 Affected?</h2>
- <p>The short answer is: although the modem in Neo900 may or may
+<!-- <p>The short answer is: although the modem in Neo900 may or may
not be affected--we cannot know since <strong>all baseband
chips are proprietary black box designs</strong>--Neo900 is
designed to not trust the modem.</p>
+-->
+ <p>The short answer is: even if the modem in Neo900 were
+ compromised, it couldn't spread infection to the rest of the
+ system like it would on most smartphones. To know why, read on.</p>
<p>In
our <a href="https://neo900.org/news/paypal-resumes-neo900-sources-again">last