CVE-2011-4864: Medium severity tencent mobileqq vulnerability
Published Jan 25, 2012
·Updated
The Tencent MobileQQ (com.tencent.mobileqq) application 2.2 for Android does not properly protect data, which allows remote attackers to read or modify messages and a friends list via a crafted application.
Affected Software
2 affected components
Tencent MobileQQ=2.2
Google Android
Event History
Jan 25, 2012
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Data Sourced
04:03 AM
DescriptionWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2011-4864?
CVE-2011-4864 is considered a high-severity vulnerability due to its potential to allow unauthorized access to sensitive user data.
2
How do I fix CVE-2011-4864?
To fix CVE-2011-4864, upgrade the Tencent MobileQQ application to a version that addresses this vulnerability.
3
What impact does CVE-2011-4864 have on users?
CVE-2011-4864 allows remote attackers to read or modify user messages and friends lists, compromising privacy.
4
Which version of Tencent MobileQQ is affected by CVE-2011-4864?
CVE-2011-4864 specifically affects Tencent MobileQQ version 2.2 for Android.
5
What should users of Tencent MobileQQ version 2.2 do regarding CVE-2011-4864?
Users of Tencent MobileQQ version 2.2 should immediately update to a newer version to mitigate the vulnerability.