In ContactsProvider, there is a possible crash loop due to resource exhaustion. This could lead to local persistent denial of service in the Phone app with User execution privileges needed. User interaction is not needed for exploitation.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://source.android.com/docs/security/bulletin/android-14 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: google_android
Published: 2023-10-30T16:56:39.335Z
Updated: 2024-09-06T20:14:30.378Z
Reserved: 2022-11-03T22:37:50.663Z
Link: CVE-2023-21364
Vulnrichment
Updated: 2024-08-02T09:36:33.482Z
NVD
Status : Modified
Published: 2023-10-30T17:15:51.883
Modified: 2024-11-21T07:42:43.197
Link: CVE-2023-21364
Redhat
No data.