CVE-2014-1978
Severity CVSS v4.0:
Pending analysis
Type:
CWE-264
Permissions, Privileges, and Access Control
Publication date:
19/03/2014
Last modified:
12/04/2025
Description
The application link interface in the NTT DOCOMO sp mode mail application 6100 through 6300 for Android 4.0.x and 6130 through 6700 for Android 4.1 through 4.4 writes message content to the SD card during e-mail composition, which allows attackers to obtain sensitive information via a crafted application.
Impact
Base Score 2.0
4.30
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:nttdocomo:spmode_mail_android:6100:*:*:*:*:android:*:* | ||
cpe:2.3:a:nttdocomo:spmode_mail_android:6300:*:*:*:*:android:*:* | ||
cpe:2.3:o:google:android:4.0:*:*:*:*:*:*:* | ||
cpe:2.3:o:google:android:4.0.1:*:*:*:*:*:*:* | ||
cpe:2.3:o:google:android:4.0.2:*:*:*:*:*:*:* | ||
cpe:2.3:o:google:android:4.0.3:*:*:*:*:*:*:* | ||
cpe:2.3:o:google:android:4.0.4:*:*:*:*:*:*:* | ||
cpe:2.3:a:nttdocomo:spmode_mail_android:6130:*:*:*:*:android:*:* | ||
cpe:2.3:a:nttdocomo:spmode_mail_android:6700:*:*:*:*:android:*:* | ||
cpe:2.3:o:google:android:4.1:*:*:*:*:*:*:* | ||
cpe:2.3:o:google:android:4.1.2:*:*:*:*:*:*:* | ||
cpe:2.3:o:google:android:4.2:*:*:*:*:*:*:* | ||
cpe:2.3:o:google:android:4.2.1:*:*:*:*:*:*:* | ||
cpe:2.3:o:google:android:4.2.2:*:*:*:*:*:*:* | ||
cpe:2.3:o:google:android:4.3:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page