Metrics
Affected Vendors & Products
| Link | Providers |
|---|---|
| https://source.android.com/security/bulletin/2025-01-01 |
|
Tue, 22 Apr 2025 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Google
Google android |
|
| CPEs | cpe:2.3:o:google:android:14.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:15.0:*:*:*:*:*:*:* |
|
| Vendors & Products |
Google
Google android |
Mon, 24 Mar 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-200 | |
| Metrics |
cvssV3_1
|
Tue, 18 Feb 2025 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-203 | |
| Metrics |
cvssV3_1
|
Wed, 22 Jan 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-203 | |
| Metrics |
cvssV3_1
|
Tue, 21 Jan 2025 23:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In multiple functions of ConnectivityService.java, there is a possible way for a Wi-Fi AP to determine what site a device has connected to through a VPN due to side channel information disclosure. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. | |
| References |
|
Status: PUBLISHED
Assigner: google_android
Published: 2025-01-21T23:04:43.573Z
Updated: 2025-03-24T16:17:55.482Z
Reserved: 2024-10-18T00:37:14.971Z
Link: CVE-2024-49734
Updated: 2025-01-22T16:59:58.428Z
Status : Analyzed
Published: 2025-01-21T23:15:14.307
Modified: 2025-04-22T14:39:15.560
Link: CVE-2024-49734
No data.