Improper Draft Cache Management in Android Mms Application Allows Unauthorized Access to SMS Messages

Improper Draft Cache Management in Android Mms Application Allows Unauthorized Access to SMS Messages

CVE-2011-0680 · MEDIUM Severity

AV:N/AC:L/AU:N/C:P/I:N/A:N

data/WorkingMessage.java in the Mms application in Android before 2.2.2 and 2.3.x before 2.3.2 does not properly manage the draft cache, which allows remote attackers to read SMS messages intended for other recipients in opportunistic circumstances via a standard text messaging service.

Learn more about our Cis Benchmark Audit For Google Android.