Description
In sdksandbox, there is a possible strandhogg style overlay attack due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-25566 | In sdksandbox, there is a possible strandhogg style overlay attack due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. |
References
| Link | Providers |
|---|---|
| https://source.android.com/docs/security/bulletin/android-14 |
|
History
No history.
Status: PUBLISHED
Assigner: google_android
Published:
Updated: 2024-09-06T18:30:52.147Z
Reserved: 2022-11-03T22:37:50.667Z
Link: CVE-2023-21398
Updated: 2024-08-02T09:36:33.657Z
Status : Modified
Published: 2023-10-30T18:15:09.977
Modified: 2024-11-21T07:42:46.937
Link: CVE-2023-21398
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD