In createQuickShareAction of SaveImageInBackgroundTask.java, there is a possible way to trigger a background activity launch due to an unsafe PendingIntent. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Metrics
Affected Vendors & Products
References
History
Thu, 26 Sep 2024 15:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-269 | |
CPEs | cpe:2.3:o:google:android:-:*:*:*:*:*:*:* | |
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: google_android
Published: 2023-09-11T20:09:53.971Z
Updated: 2024-09-26T14:28:34.798Z
Reserved: 2023-06-15T02:50:31.872Z
Link: CVE-2023-35676
Vulnrichment
Updated: 2024-08-02T16:30:44.629Z
NVD
Status : Modified
Published: 2023-09-11T21:15:42.313
Modified: 2024-11-21T08:08:29.303
Link: CVE-2023-35676
Redhat
No data.