In multiple locations, there is a possible bypass of health data permissions due to an improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Metrics
Affected Vendors & Products
References
History
Tue, 17 Dec 2024 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Google
Google android |
|
| Weaknesses | NVD-CWE-noinfo | |
| CPEs | cpe:2.3:o:google:android:14.0:*:*:*:*:*:*:* | |
| Vendors & Products |
Google
Google android |
|
| Metrics |
cvssV3_1
|
cvssV3_1
|
Status: PUBLISHED
Assigner: google_android
Published: 2024-05-07T21:03:30.941Z
Updated: 2024-08-01T23:13:07.539Z
Reserved: 2024-01-20T00:17:15.383Z
Link: CVE-2024-23706
Updated: 2024-08-01T23:13:07.539Z
Status : Analyzed
Published: 2024-05-07T21:15:08.737
Modified: 2024-12-17T16:12:26.823
Link: CVE-2024-23706
No data.