Vulnerability Abstract

Title: Vulnerability in GO QQWeiboWidget for Android
Time: 01 Mar 2012
Author: Daoyuan Wu*, Xiapu Luo* and Rocky K. C. Chang
Department of Computing, The Hong Kong Polytechnic University, Hong Kong
* authors with equal contributions
CVE ID: CVE-2012-1397
Category: Newly Confirmed
Related Vendor: GO Launcher Dev Team

Application Information

Archive Time: Mar 1, 2012 at 11:52 PM HKT
Package Name: com.gau.go.launcherex.gowidget.qqweibowidget
Full Name: GO QQWeiboWidget (GO 腾讯微博小部件)
Affected Version: 1.2 (the latest version in 01 Mar 2012)
Package Installs: 1,000 - 5,000
Market Link: https://market.android.com/details?id=com.gau.go.launcherex.gowidget.qqweibowidget

Vulnerability Details

Status: Details only release to related vendor.

Vendor Response

Contact Time: Mar 2, 2012 at 8:17 PM HKT
Confirm Time: Mar 5, 2012 at 9:55 PM HKT
Patched Time: Unknown
Patched Status: Unknown

Important Notes

Although we only mention one or several affected version in our report, other versions may also be vulnerable, e.g. lower version, pad version or paid version.

Related Vulnerabilities