PT-2023-17976 · Google · Android
Published
2023-06-28
·
Updated
2023-07-05
·
CVE-2023-21189
CVSS v3.1
7.3
High
| Vector | AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Android version 13
Description
A logic error in the LockTaskController.java code allows for a possible bypass of lock task mode. This could lead to local escalation of privilege with no additional execution privileges needed, requiring user interaction for exploitation.
Recommendations
For Android version 13, update to a version that includes the fix for the logic error in LockTaskController.java to prevent bypass of lock task mode.
Fix
Improper Locking
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Android