In AcvpOnMessage of avcp.cpp, there is a possible EOP due to uninitialized data. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Metrics
Affected Vendors & Products
References
History
Thu, 08 Aug 2024 15:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-269 |
MITRE
Status: PUBLISHED
Assigner: Google_Devices
Published: 2024-06-13T21:01:59.122Z
Updated: 2024-08-08T14:06:57.410Z
Reserved: 2024-04-19T15:00:32.963Z
Link: CVE-2024-32906
Vulnrichment
Updated: 2024-08-02T02:20:35.661Z
NVD
Status : Modified
Published: 2024-06-13T21:15:54.810
Modified: 2024-11-21T09:15:59.697
Link: CVE-2024-32906
Redhat
No data.