In RunInternal of dumpstate.cpp, there is a possible user consent bypass due to an uncaught exception. This could lead to local information disclosure of bug report data with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-10Android ID: A-152944488
References
Link | Resource |
---|---|
https://source.android.com/security/bulletin/2020-09-01 | Vendor Advisory |
https://source.android.com/security/bulletin/2020-09-01 | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
21 Nov 2024, 04:53
Type | Values Removed | Values Added |
---|---|---|
References | () https://source.android.com/security/bulletin/2020-09-01 - Vendor Advisory |
Information
Published : 2020-09-17 16:15
Updated : 2024-11-21 04:53
NVD link : CVE-2020-0382
Mitre link : CVE-2020-0382
CVE.ORG link : CVE-2020-0382
JSON object : View
Products Affected
- android
CWE
CWE-755
Improper Handling of Exceptional Conditions