packages/SystemUI/src/com/android/systemui/recents/AlternateRecentsComponent.java in Setup Wizard in Android 5.1.x before 5.1.1 LMY49G and 6.x before 2016-02-01 does not properly check for device provisioning, which allows physically proximate attackers to bypass the Factory Reset Protection protection mechanism and delete data via unspecified vectors, aka internal bug 25476219.
References
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 02:42
Type | Values Removed | Values Added |
---|---|---|
References | () http://source.android.com/security/bulletin/2016-02-01.html - Vendor Advisory | |
References | () https://android.googlesource.com/platform%2Fframeworks%2Fbase/+/16a76dadcc23a13223e9c2216dad1fe5cad7d6e1 - |
Information
Published : 2016-02-07 01:59
Updated : 2024-11-21 02:42
NVD link : CVE-2016-0813
Mitre link : CVE-2016-0813
CVE.ORG link : CVE-2016-0813
JSON object : View
Products Affected
- android
CWE
CWE-264
Permissions, Privileges, and Access Controls