In multiple locations, there is a possible way for apps to access cross-user message data due to a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
Metrics
Affected Vendors & Products
References
History
Fri, 13 Dec 2024 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Google
Google android |
|
Weaknesses | CWE-862 | |
CPEs | cpe:2.3:o:google:android:11.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:12.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:12.1:*:*:*:*:*:*:* cpe:2.3:o:google:android:13.0:*:*:*:*:*:*:* |
|
Vendors & Products |
Google
Google android |
Wed, 06 Nov 2024 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: google_android
Published:
Updated: 2024-11-06T21:10:46.324Z
Reserved: 2023-08-09T02:29:31.889Z
Link: CVE-2023-40113

Updated: 2024-08-02T18:24:55.527Z

Status : Analyzed
Published: 2024-02-15T23:15:08.597
Modified: 2024-12-13T20:49:29.973
Link: CVE-2023-40113

No data.