PT-2023-28420 · Google · Android 13+2

Published

2023-11-07

·

Updated

2023-11-15

·

CVE-2023-42552

CVSS v3.1

4.4

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions Firewall application versions prior to 12.1.00.24 in Android 11 Firewall application versions prior to 13.1.00.16 in Android 12 Firewall application versions prior to 14.1.00.7 in Android 13
Description The issue allows a 3rd party application to tamper with the database of the Firewall application. This is due to an implicit intent hijacking vulnerability.
Recommendations For versions prior to 12.1.00.24 in Android 11, update to version 12.1.00.24 or later. For versions prior to 13.1.00.16 in Android 12, update to version 13.1.00.16 or later. For versions prior to 14.1.00.7 in Android 13, update to version 14.1.00.7 or later.

Fix

Related Identifiers

CVE-2023-42552

Affected Products

Android 11
Android 12
Android 13