CVE-2024-40652
CVE-2024-40652
Título es
CVE-2024-40652
Mié, 11/09/2024 – 00:15
Gravedad 2.0 Txt
Pendiente de análisis
Título en
CVE-2024-40652
Descripción en
In onCreate of SettingsHomepageActivity.java, there is a possible way to access the Settings app while the device is provisioning due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.
11/09/2024
11/09/2024
Gravedad 3.1 Txt Gravedad 3.1 (CVSS 3.1 Base Score)
Pendiente de análisis
Referencias
Enviar en el boletín
Off