Vulnerabilites related to Kaspersky Lab - Kaspersky Lab Kaspersky Internet Security for Android 11.12.4.1622
CVE-2017-12817 (GCVE-0-2017-12817)
Vulnerability from cvelistv5
Published
2017-08-25 20:00
Modified
2024-08-05 18:51
Severity ?
CWE
  • Incorrect encryption
Summary
In Kaspersky Internet Security for Android 11.12.4.1622, some of the application trace files were not encrypted.
References
Impacted products
Vendor Product Version
Kaspersky Lab Kaspersky Lab Kaspersky Internet Security for Android 11.12.4.1622 Version: Kaspersky Lab Kaspersky Internet Security for Android 11.12.4.1622
Create a notification for this product.
Show details on NVD website


{
  "containers": {
    "adp": [
      {
        "providerMetadata": {
          "dateUpdated": "2024-08-05T18:51:06.654Z",
          "orgId": "af854a3a-2127-422b-91ae-364da2661108",
          "shortName": "CVE"
        },
        "references": [
          {
            "tags": [
              "x_refsource_CONFIRM",
              "x_transferred"
            ],
            "url": "https://support.kaspersky.com/vulnerability.aspx?el=12430#090817"
          },
          {
            "name": "100504",
            "tags": [
              "vdb-entry",
              "x_refsource_BID",
              "x_transferred"
            ],
            "url": "http://www.securityfocus.com/bid/100504"
          }
        ],
        "title": "CVE Program Container"
      }
    ],
    "cna": {
      "affected": [
        {
          "product": "Kaspersky Lab Kaspersky Internet Security for Android 11.12.4.1622",
          "vendor": "Kaspersky Lab",
          "versions": [
            {
              "status": "affected",
              "version": "Kaspersky Lab Kaspersky Internet Security for Android 11.12.4.1622"
            }
          ]
        }
      ],
      "datePublic": "2017-08-25T00:00:00",
      "descriptions": [
        {
          "lang": "en",
          "value": "In Kaspersky Internet Security for Android 11.12.4.1622, some of the application trace files were not encrypted."
        }
      ],
      "problemTypes": [
        {
          "descriptions": [
            {
              "description": "Incorrect encryption",
              "lang": "en",
              "type": "text"
            }
          ]
        }
      ],
      "providerMetadata": {
        "dateUpdated": "2017-08-29T09:57:01",
        "orgId": "e45d732a-8f6b-4b6b-be76-7420f6a2b988",
        "shortName": "Kaspersky"
      },
      "references": [
        {
          "tags": [
            "x_refsource_CONFIRM"
          ],
          "url": "https://support.kaspersky.com/vulnerability.aspx?el=12430#090817"
        },
        {
          "name": "100504",
          "tags": [
            "vdb-entry",
            "x_refsource_BID"
          ],
          "url": "http://www.securityfocus.com/bid/100504"
        }
      ],
      "x_legacyV4Record": {
        "CVE_data_meta": {
          "ASSIGNER": "vulnerability@kaspersky.com",
          "ID": "CVE-2017-12817",
          "STATE": "PUBLIC"
        },
        "affects": {
          "vendor": {
            "vendor_data": [
              {
                "product": {
                  "product_data": [
                    {
                      "product_name": "Kaspersky Lab Kaspersky Internet Security for Android 11.12.4.1622",
                      "version": {
                        "version_data": [
                          {
                            "version_value": "Kaspersky Lab Kaspersky Internet Security for Android 11.12.4.1622"
                          }
                        ]
                      }
                    }
                  ]
                },
                "vendor_name": "Kaspersky Lab"
              }
            ]
          }
        },
        "data_format": "MITRE",
        "data_type": "CVE",
        "data_version": "4.0",
        "description": {
          "description_data": [
            {
              "lang": "eng",
              "value": "In Kaspersky Internet Security for Android 11.12.4.1622, some of the application trace files were not encrypted."
            }
          ]
        },
        "problemtype": {
          "problemtype_data": [
            {
              "description": [
                {
                  "lang": "eng",
                  "value": "Incorrect encryption"
                }
              ]
            }
          ]
        },
        "references": {
          "reference_data": [
            {
              "name": "https://support.kaspersky.com/vulnerability.aspx?el=12430#090817",
              "refsource": "CONFIRM",
              "url": "https://support.kaspersky.com/vulnerability.aspx?el=12430#090817"
            },
            {
              "name": "100504",
              "refsource": "BID",
              "url": "http://www.securityfocus.com/bid/100504"
            }
          ]
        }
      }
    }
  },
  "cveMetadata": {
    "assignerOrgId": "e45d732a-8f6b-4b6b-be76-7420f6a2b988",
    "assignerShortName": "Kaspersky",
    "cveId": "CVE-2017-12817",
    "datePublished": "2017-08-25T20:00:00",
    "dateReserved": "2017-08-11T00:00:00",
    "dateUpdated": "2024-08-05T18:51:06.654Z",
    "state": "PUBLISHED"
  },
  "dataType": "CVE_RECORD",
  "dataVersion": "5.1"
}

CVE-2017-12816 (GCVE-0-2017-12816)
Vulnerability from cvelistv5
Published
2017-08-25 20:00
Modified
2024-08-05 18:51
Severity ?
CWE
  • Incorrect Access Control
Summary
In Kaspersky Internet Security for Android 11.12.4.1622, some of application exports activities have weak permissions, which might be used by a malware application to get unauthorized access to the product functionality by using Android IPC.
References
Impacted products
Vendor Product Version
Kaspersky Lab Kaspersky Lab Kaspersky Internet Security for Android 11.12.4.1622 Version: Kaspersky Lab Kaspersky Internet Security for Android 11.12.4.1622
Create a notification for this product.
Show details on NVD website


{
  "containers": {
    "adp": [
      {
        "providerMetadata": {
          "dateUpdated": "2024-08-05T18:51:06.794Z",
          "orgId": "af854a3a-2127-422b-91ae-364da2661108",
          "shortName": "CVE"
        },
        "references": [
          {
            "tags": [
              "x_refsource_CONFIRM",
              "x_transferred"
            ],
            "url": "https://support.kaspersky.com/vulnerability.aspx?el=12430#090817"
          },
          {
            "name": "100505",
            "tags": [
              "vdb-entry",
              "x_refsource_BID",
              "x_transferred"
            ],
            "url": "http://www.securityfocus.com/bid/100505"
          }
        ],
        "title": "CVE Program Container"
      }
    ],
    "cna": {
      "affected": [
        {
          "product": "Kaspersky Lab Kaspersky Internet Security for Android 11.12.4.1622",
          "vendor": "Kaspersky Lab",
          "versions": [
            {
              "status": "affected",
              "version": "Kaspersky Lab Kaspersky Internet Security for Android 11.12.4.1622"
            }
          ]
        }
      ],
      "datePublic": "2017-08-25T00:00:00",
      "descriptions": [
        {
          "lang": "en",
          "value": "In Kaspersky Internet Security for Android 11.12.4.1622, some of application exports activities have weak permissions, which might be used by a malware application to get unauthorized access to the product functionality by using Android IPC."
        }
      ],
      "problemTypes": [
        {
          "descriptions": [
            {
              "description": "Incorrect Access Control",
              "lang": "en",
              "type": "text"
            }
          ]
        }
      ],
      "providerMetadata": {
        "dateUpdated": "2017-08-29T09:57:01",
        "orgId": "e45d732a-8f6b-4b6b-be76-7420f6a2b988",
        "shortName": "Kaspersky"
      },
      "references": [
        {
          "tags": [
            "x_refsource_CONFIRM"
          ],
          "url": "https://support.kaspersky.com/vulnerability.aspx?el=12430#090817"
        },
        {
          "name": "100505",
          "tags": [
            "vdb-entry",
            "x_refsource_BID"
          ],
          "url": "http://www.securityfocus.com/bid/100505"
        }
      ],
      "x_legacyV4Record": {
        "CVE_data_meta": {
          "ASSIGNER": "vulnerability@kaspersky.com",
          "ID": "CVE-2017-12816",
          "STATE": "PUBLIC"
        },
        "affects": {
          "vendor": {
            "vendor_data": [
              {
                "product": {
                  "product_data": [
                    {
                      "product_name": "Kaspersky Lab Kaspersky Internet Security for Android 11.12.4.1622",
                      "version": {
                        "version_data": [
                          {
                            "version_value": "Kaspersky Lab Kaspersky Internet Security for Android 11.12.4.1622"
                          }
                        ]
                      }
                    }
                  ]
                },
                "vendor_name": "Kaspersky Lab"
              }
            ]
          }
        },
        "data_format": "MITRE",
        "data_type": "CVE",
        "data_version": "4.0",
        "description": {
          "description_data": [
            {
              "lang": "eng",
              "value": "In Kaspersky Internet Security for Android 11.12.4.1622, some of application exports activities have weak permissions, which might be used by a malware application to get unauthorized access to the product functionality by using Android IPC."
            }
          ]
        },
        "problemtype": {
          "problemtype_data": [
            {
              "description": [
                {
                  "lang": "eng",
                  "value": "Incorrect Access Control"
                }
              ]
            }
          ]
        },
        "references": {
          "reference_data": [
            {
              "name": "https://support.kaspersky.com/vulnerability.aspx?el=12430#090817",
              "refsource": "CONFIRM",
              "url": "https://support.kaspersky.com/vulnerability.aspx?el=12430#090817"
            },
            {
              "name": "100505",
              "refsource": "BID",
              "url": "http://www.securityfocus.com/bid/100505"
            }
          ]
        }
      }
    }
  },
  "cveMetadata": {
    "assignerOrgId": "e45d732a-8f6b-4b6b-be76-7420f6a2b988",
    "assignerShortName": "Kaspersky",
    "cveId": "CVE-2017-12816",
    "datePublished": "2017-08-25T20:00:00",
    "dateReserved": "2017-08-11T00:00:00",
    "dateUpdated": "2024-08-05T18:51:06.794Z",
    "state": "PUBLISHED"
  },
  "dataType": "CVE_RECORD",
  "dataVersion": "5.1"
}