PT-2021-13033 · Google · Android
Le Wu
·
Published
2021-02-02
·
Updated
2021-02-24
·
CVE-2021-0354
CVSS v3.1
6.7
Medium
| Vector | AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions:
Android versions Android-8.1 through Android-11
Description:
The issue is related to an integer overflow that could lead to an out of bounds write in the
ged component. This could result in local escalation of privilege, requiring System execution privileges. No user interaction is needed for exploitation.Recommendations:
For Android versions Android-8.1 through Android-11, apply the patch with ID ALPS05431161 to resolve the issue.
Fix
Integer Overflow
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Android