PT-2014-4401 · Ntt Docomo+1 · Sp Mode Mail+1
Hironori Tokuta
·
Published
2014-03-19
·
Updated
2014-03-20
·
CVE-2014-1979
CVSS v2.0
6.8
Medium
| Vector | AV:N/AC:M/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
NTT DOCOMO sp mode mail application versions 5900 through 6300 for Android 4.0.x
NTT DOCOMO sp mode mail application versions 6000 through 6620 for Android 4.1 through 4.4
Description
The issue allows remote attackers to execute arbitrary Java methods via Deco-mail emoticon POP data in an e-mail message.
Recommendations
For versions 5900 through 6300, update to a version outside of this range to mitigate the risk.
For versions 6000 through 6620, update to a version outside of this range to mitigate the risk.
Fix
Code Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Android
Sp Mode Mail