CVE-2012-5182: Infoleak
Published Dec 26, 2012
·Updated
The Loctouch application 3.4.6 and earlier for Android does not properly handle implicit intents, which allows attackers to obtain sensitive information about logged locations via a crafted application.
Affected Software
1 affected component
NAVER Loctouch Android<=3.4.6
Event History
Dec 26, 2012
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2012-5182?
CVE-2012-5182 is rated as a medium severity vulnerability due to its potential to expose sensitive location information.
2
How do I fix CVE-2012-5182?
To fix CVE-2012-5182, update the Loctouch application to version 3.4.7 or later.
3
What type of vulnerability is CVE-2012-5182?
CVE-2012-5182 is an implicit intent handling vulnerability that can lead to information disclosure.
4
Who is affected by CVE-2012-5182?
Users of the Loctouch application version 3.4.6 and earlier on Android devices are affected by CVE-2012-5182.
5
What can attackers achieve through CVE-2012-5182?
Attackers can obtain sensitive information about logged locations through a crafted application due to CVE-2012-5182.