PT-2025-2850 · Google · Android+1

Published

2025-01-01

·

Updated

2025-01-22

·

CVE-2024-49735

CVSS v3.1

7.8

High

AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions No specific software or versions are mentioned in the provided descriptions.
Description The issue is related to a failure to persist permissions settings due to resource exhaustion, which could lead to local escalation of privilege without needing additional execution privileges. User interaction is not required for exploitation.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Allocation of Resources Without Limits

Incorrect Default Permissions

Weakness Enumeration

Related Identifiers

ASB-A-345881518
CVE-2024-49735

Affected Products

Android
Platform/Frameworks/Base