Description
In Telephony, there is a possible way to retrieve the ICCID due to a logic error in the code. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-25544 | In Telephony, there is a possible way to retrieve the ICCID due to a logic error in the code. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. |
References
| Link | Providers |
|---|---|
| https://source.android.com/docs/security/bulletin/android-14 |
|
History
Thu, 06 Mar 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-269 | |
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: google_android
Published:
Updated: 2025-03-06T16:01:03.848Z
Reserved: 2022-11-03T22:37:50.665Z
Link: CVE-2023-21376
Updated: 2024-08-02T09:36:33.543Z
Status : Modified
Published: 2023-10-30T18:15:09.100
Modified: 2025-03-06T16:15:39.520
Link: CVE-2023-21376
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD