PT-2024-21261 · Google · Android

Published

2024-03-11

·

Updated

2024-08-27

·

CVE-2024-25986

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions No specific software or versions are mentioned in the provided descriptions.
Description A logic error in the code of ppmp unprotect buf in drm fw.c could lead to a compromise of protected memory. This issue may result in local escalation of privilege to TEE, requiring no additional execution privileges. User interaction is not necessary for exploitation.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2024-25986

Affected Products

Android