Title: Blackberry Enterprise Server Router SRP Packet Denial Of Service Vulnerability
Severity: MODERATE
Description:
Research In Motion Blackberry Enterprise Server is communications middleware for Blackberry devices. The server uses a Router component to transmit messages between servers, the Blackberry Infrastructure, Blackberry handheld devices, and any other client devices.
The Blackberry Enterprise Server Router component is prone to a denial of service vulnerability. A successful attack may disrupt communications between the server and other services and devices.
This vulnerability may be triggered by sending malformed SRP (Server Routing Protocol) packets to the Router. The issue could only be exploited by an attacker who is in a position to impersonate the Blackberry Infrastructure or possibly has access to the internal network that the server is deployed on. The component accepts messages on TCP port 3101.
Affected Products:
- Research In Motion Blackberry Enterprise Server for Domino 4.0.0
- Research In Motion Blackberry Enterprise Server for Exchange 4.0.0 SP1
References:
- Research In Motion: Known Issues - Denial of service on the BlackBerry Router
Juniper Networks provides this content via a wide variety of sources and production methods. If notified of errors or omissions in the content of this page, Juniper Networks, at its discretion, will modify or remove the page or leave the content as is, depending on various factors including but not limited to the reputation and authority of the party providing the notification. Please use the contact information displayed elsewhere on this page to report any errors or omissions regarding the content on this page.