PT-2025-2850 · Google · Android+1

Published

2025-01-01

·

Updated

2025-01-22

·

CVE-2024-49735

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions No specific software or versions are mentioned in the provided descriptions.
Description The issue is related to a failure to persist permissions settings due to resource exhaustion, which could lead to local escalation of privilege without needing additional execution privileges. User interaction is not required for exploitation.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Incorrect Default Permissions

Allocation of Resources Without Limits

Weakness Enumeration

Related Identifiers

ASB-A-345881518
CVE-2024-49735

Affected Products

Android
Platform/Frameworks/Base