In UsageStatsService, there is a possible way to read installed 3rd party apps due to side channel information disclosure. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: google_android

Published: 2023-10-30T16:56:31.063Z

Updated: 2024-09-06T20:17:08.134Z

Reserved: 2022-11-03T22:37:50.660Z

Link: CVE-2023-21319

cve-icon Vulnrichment

Updated: 2024-08-02T09:36:32.966Z

cve-icon NVD

Status : Analyzed

Published: 2023-10-30T17:15:48.800

Modified: 2023-11-06T17:57:47.707

Link: CVE-2023-21319

cve-icon Redhat

No data.