X.509 Certificate Validation Flaw in Android Application by Seven Bulls
CVE-2014-5548

Currently unrated

Key Information:

Vendor
CVE Published:
9 September 2014

What is CVE-2014-5548?

The Christmas Words application by Seven Bulls for Android fails to properly validate X.509 certificates from SSL servers. This oversight opens the door for man-in-the-middle attackers to impersonate legitimate servers through the use of a maliciously crafted certificate, potentially leading to unauthorized access to sensitive user data and other security implications.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.