CVE-2018-14991: Input Validation
The Coolpad Defiant device with a build fingerprint of Coolpad/cp3632a/cp3632a:7.1.1/NMF26F/099480857:user/release-keys, the ZTE ZMAX Pro with a build fingerprint of ZTE/P895T20/urd:6.0.1/MMB29M/20170418.114928:user/release-keys, and the T-Mobile Revvl Plus with a build fingerprint of Coolpad/alchemy/alchemy:7.1.1/143.14.171129.3701A-TMO/buildfnj02-206:user/release-keys all contain a vulnerable, pre-installed Rich Communication Services (RCS) app. These devices contain an that app has a package name of com.suntek.mway.rcs.app.service (versionCode=1, versionName=RCSsdkMnative2016100801; versionCode=1, versionName=RCSsdkMnative2017040601) with an exported content provider named com.suntek.mway.rcs.app.service.provider.message.MessageProvider and a refactored version of the app with a package name of com.rcs.gsma.na.sdk (versionCode=1, versionName=RCSSDK2017080401) with a content provider named com.rcs.gsma.na.provider.message.MessageProvider allow any app co-located on the device to read, write, insert, and modify the user's text messages. This is enabled by an exported content provider app component that serves as a wrapper to the official content provider that contains the user's text messages. This app cannot be disabled by the user and the attack can be performed by a zero-permission app.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-14991?
CVE-2018-14991 is classified as a high severity vulnerability that can potentially be exploited by attackers.
How do I fix CVE-2018-14991?
To mitigate CVE-2018-14991, users should update their devices to the latest firmware version provided by the manufacturers.
Which devices are affected by CVE-2018-14991?
CVE-2018-14991 affects the Coolpad Defiant, ZTE ZMAX Pro, and T-Mobile Revvl Plus devices.
What type of vulnerability is CVE-2018-14991?
CVE-2018-14991 is a vulnerability related to misconfigurations in certain Android devices that may expose them to security risks.
Is there a known exploit for CVE-2018-14991?
As of now, there is no publicly reported exploit for CVE-2018-14991, but its potential for exploitation remains a concern.