Vulnerability Abstract

Title: Vulnerability in GO WeiboWidget for Android
Time: 01 Mar 2012
Author: Daoyuan Wu*, Xiapu Luo* and Rocky K. C. Chang
Department of Computing, The Hong Kong Polytechnic University, Hong Kong
* authors with equal contributions
CVE ID: CVE-2012-1398
Category: Newly Confirmed
Related Vendor: GO Launcher EX

Application Information

Archive Time: Mar 1, 2012 at 11:53 PM HKT
Package Name: com.gau.go.launcherex.gowidget.weibowidget
Full Name: GO WeiboWidget (新浪微博 GO桌面小部件)
Affected Version: 2.4 (the latest version in 01 Mar 2012)
Package Installs: 10,000 - 50,000
Market Link: https://market.android.com/details?id=com.gau.go.launcherex.gowidget.weibowidget

Vulnerability Details

Status: Details only release to related vendor.

Vendor Response

Contact Time: Mar 2, 2012 at 8:19 PM HKT
Confirm Time: Mar 5, 2012 at 9:55 PM HKT
Patched Time: Unknown
Patched Status: Unknown

Important Notes

Although we only mention one or several affected version in our report, other versions may also be vulnerable, e.g. lower version, pad version or paid version.

Related Vulnerabilities