PT-2014-4401 · Ntt Docomo+1 · Sp Mode Mail+1
Hironori Tokuta
·
Publicado
2014-03-19
·
Atualizado
2014-03-20
·
CVE-2014-1979
CVSS v2.0
6.8
Média
| Vetor | AV:N/AC:M/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
NTT DOCOMO sp mode mail application versions 5900 through 6300 for Android 4.0.x
NTT DOCOMO sp mode mail application versions 6000 through 6620 for Android 4.1 through 4.4
Description
The issue allows remote attackers to execute arbitrary Java methods via Deco-mail emoticon POP data in an e-mail message.
Recommendations
For versions 5900 through 6300, update to a version outside of this range to mitigate the risk.
For versions 6000 through 6620, update to a version outside of this range to mitigate the risk.
Correção
Code Injection
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Android
Sp Mode Mail