A hard-coded AES key vulnerability was reported in the Motorola GuideMe application, along with a lack of URI sanitation, could allow for a local attacker to read arbitrary files.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-31712 | A hard-coded AES key vulnerability was reported in the Motorola GuideMe application, along with a lack of URI sanitation, could allow for a local attacker to read arbitrary files. |
Fixes
Solution
Update your Motorola phone to the latest software version. Software versions with a Security Patch Level of 2024-03-01 or later include a fix for this vulnerability.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: lenovo
Published:
Updated: 2024-08-01T19:32:42.671Z
Reserved: 2024-03-29T20:30:17.481Z
Link: CVE-2024-3109
Updated: 2024-08-01T19:32:42.671Z
Status : Awaiting Analysis
Published: 2024-05-03T14:15:11.157
Modified: 2024-11-21T09:28:55.097
Link: CVE-2024-3109
No data.
OpenCVE Enrichment
No data.
EUVD