Google Android Dialer TEL URL Handling Flaw Lets Remote Users Deny Service
Android Version: 2.3.x (potentially earlier versions before 2.3.x too), 3.x (Honeycomb), 4.0.x Ice Cream Sandwitch, 4.1.x Jelly Bean
Devices affected include: Samsung Galaxy SIII, SII, S Advance, Ace, and possibly others; HTC One Series, Sensation, Sensation XL, and possibly others; Motorola Droids, and Sony Ericsson Xperia series
A vulnerability was reported in Google Android
A remote user can create a specially crafted 'TEL' protocol URL that, when loaded by the target user, will execute unstructured supplementary service data (USSD) codes on the target user's device and destroy the SIM card on the target user's device.
A remote user can destroy the SIM card on the target user's device.
Update your device. The vendor silently issued a fix in June 2012.