In multiple locations, there is a possible cross-user read due to a confused deputy. This could lead to local information disclosure of photos or other images with no additional execution privileges needed. User interaction is not needed for exploitation.
Metrics
Affected Vendors & Products
References
History
Fri, 13 Dec 2024 20:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Google
Google android |
|
CPEs | cpe:2.3:o:google:android:11.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:12.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:12.1:*:*:*:*:*:*:* cpe:2.3:o:google:android:13.0:*:*:*:*:*:*:* |
|
Vendors & Products |
Google
Google android |
Mon, 04 Nov 2024 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-125 | |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: google_android
Published:
Updated: 2024-11-04T16:17:33.093Z
Reserved: 2023-08-09T02:29:33.868Z
Link: CVE-2023-40124

Updated: 2024-08-02T18:24:55.334Z

Status : Analyzed
Published: 2024-02-15T23:15:08.743
Modified: 2024-12-13T20:10:19.213
Link: CVE-2023-40124

No data.