PT-2023-18068 · Google · Android+2

Published

2023-08-01

·

Updated

2023-08-21

·

CVE-2023-21289

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Software (affected versions not specified)
Description In multiple locations, there is a possible bypass of a multi-user security boundary due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

ASB-A-272020068
CVE-2023-21289

Affected Products

Android
Platform/Frameworks/Base
Platform/Packages/Apps/Quickaccesswallet