In onCreate of multiple files, there is a possible way to trick the user into granting health permissions due to tapjacking. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Metrics
Affected Vendors & Products
References
History
Tue, 17 Dec 2024 19:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Google
Google android |
|
Weaknesses | CWE-1021 | |
CPEs | cpe:2.3:o:google:android:14.0:*:*:*:*:*:*:* | |
Vendors & Products |
Google
Google android |
MITRE
Status: PUBLISHED
Assigner: google_android
Published: 2024-07-09T20:09:16.244Z
Updated: 2024-08-02T01:52:56.548Z
Reserved: 2024-03-29T20:12:39.973Z
Link: CVE-2024-31323
Vulnrichment
Updated: 2024-08-02T01:52:56.548Z
NVD
Status : Analyzed
Published: 2024-07-09T21:15:13.490
Modified: 2024-12-17T19:05:25.510
Link: CVE-2024-31323
Redhat
No data.