PT-2014-4401 · Ntt Docomo+1 · Sp Mode Mail+1

Hironori Tokuta

·

Published

2014-03-19

·

Updated

2014-03-20

·

CVE-2014-1979

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions NTT DOCOMO sp mode mail application versions 5900 through 6300 for Android 4.0.x NTT DOCOMO sp mode mail application versions 6000 through 6620 for Android 4.1 through 4.4
Description The issue allows remote attackers to execute arbitrary Java methods via Deco-mail emoticon POP data in an e-mail message.
Recommendations For versions 5900 through 6300, update to a version outside of this range to mitigate the risk. For versions 6000 through 6620, update to a version outside of this range to mitigate the risk.

Fix

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2014-1979

Affected Products

Android
Sp Mode Mail