In setParameter of MtpPacket.cpp, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
History

Mon, 16 Dec 2024 19:45:00 +0000

Type Values Removed Values Added
First Time appeared Google
Google android
Weaknesses CWE-787
CPEs cpe:2.3:o:google:android:11.0:*:*:*:*:*:*:*
cpe:2.3:o:google:android:12.0:*:*:*:*:*:*:*
cpe:2.3:o:google:android:12.1:*:*:*:*:*:*:*
cpe:2.3:o:google:android:13.0:*:*:*:*:*:*:*
cpe:2.3:o:google:android:14.0:*:*:*:*:*:*:*
Vendors & Products Google
Google android

cve-icon MITRE

Status: PUBLISHED

Assigner: google_android

Published: 2024-02-16T00:08:18.790Z

Updated: 2024-08-01T17:41:15.511Z

Reserved: 2023-11-16T22:59:19.523Z

Link: CVE-2024-0040

cve-icon Vulnrichment

Updated: 2024-08-01T17:41:15.511Z

cve-icon NVD

Status : Analyzed

Published: 2024-02-16T02:15:51.203

Modified: 2024-12-16T19:16:31.127

Link: CVE-2024-0040

cve-icon Redhat

No data.