CVE-2012-2980 - CVE House
Back to Database
Status published High CVE-2012-2980

The Samsung and HTC onTouchEvent method implementation for Android on...

Vulnerability Description

The Samsung and HTC onTouchEvent method implementation for Android on the T-Mobile myTouch 3G Slide, HTC Merge, Sprint EVO Shift 4G, HTC ChaCha, AT&T Status, HTC Desire Z, T-Mobile G2, T-Mobile myTouch 4G Slide, and Samsung Galaxy S stores touch coordinates in the dmesg buffer, which allows remote attackers to obtain sensitive information via a crafted application, as demonstrated by PIN numbers, telephone numbers, and text messages.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2012-2980

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

status, chacha, desire, merge, galaxy s, evo shift 4g, g2, mytouch 3g slide, mytouch 4g slide
Vulnerable Versions:
Unknown

Timeline

Official Publish: August 21st, 2012
Last Modified: September 16th, 2024
Added to House: July 19th, 2026

CVSS Vectors

Weaknesses (CWE)

No CWE data available

MITRE ATT&CK TTPs

No associated TTPs found for this vulnerability.