An issue was discovered in the GAEN (aka Google/Apple Exposure Notifications) protocol through 2020-09-29, as used in COVID-19 applications on Android and iOS. It allows a user to be put in a position where he or she can be coerced into proving or disproving an exposure notification, because of the persistent state of a private framework.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2020-09-30T17:43:01
Updated: 2024-08-04T15:19:09.329Z
Reserved: 2020-08-27T00:00:00
Link: CVE-2020-24721
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-09-30T18:15:25.193
Modified: 2024-11-21T05:15:58.070
Link: CVE-2020-24721
Redhat
No data.