CVE Vulnerabilities

CVE-2012-1244

Published: Apr 27, 2012 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

The NTT DOCOMO sp mode mail application 5400 and earlier for Android does not properly verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.

Affected Software

NameVendorStart VersionEnd Version
Spmode_mail_androidNttdocomo*5400 (including)
Spmode_mail_androidNttdocomo2546 (including)2546 (including)
Spmode_mail_androidNttdocomo2631 (including)2631 (including)
Spmode_mail_androidNttdocomo3000 (including)3000 (including)
Spmode_mail_androidNttdocomo3100 (including)3100 (including)
Spmode_mail_androidNttdocomo3200 (including)3200 (including)
Spmode_mail_androidNttdocomo3300 (including)3300 (including)
Spmode_mail_androidNttdocomo3400 (including)3400 (including)
Spmode_mail_androidNttdocomo4000 (including)4000 (including)
Spmode_mail_androidNttdocomo4200 (including)4200 (including)
Spmode_mail_androidNttdocomo4300 (including)4300 (including)
Spmode_mail_androidNttdocomo4400 (including)4400 (including)
Spmode_mail_androidNttdocomo4500 (including)4500 (including)
Spmode_mail_androidNttdocomo4600 (including)4600 (including)
Spmode_mail_androidNttdocomo4700 (including)4700 (including)
Spmode_mail_androidNttdocomo4800 (including)4800 (including)
Spmode_mail_androidNttdocomo4900 (including)4900 (including)
Spmode_mail_androidNttdocomo5000 (including)5000 (including)
Spmode_mail_androidNttdocomo5100 (including)5100 (including)
Spmode_mail_androidNttdocomo5200 (including)5200 (including)
Spmode_mail_androidNttdocomo5300 (including)5300 (including)

References