In isPackageDeviceAdmin of PackageManagerService.java, there is a possible edge case which could prevent the uninstallation of CloudDpc due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Metrics
Affected Vendors & Products
References
History
Fri, 03 Jan 2025 23:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-276 | |
Metrics |
cvssV3_1
|
Fri, 03 Jan 2025 00:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | In isPackageDeviceAdmin of PackageManagerService.java, there is a possible edge case which could prevent the uninstallation of CloudDpc due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. | |
References |
|
MITRE
Status: PUBLISHED
Assigner: google_android
Published: 2025-01-02T23:58:27.333Z
Updated: 2025-01-03T23:00:52.211Z
Reserved: 2024-08-15T20:40:04.310Z
Link: CVE-2024-43769
Vulnrichment
Updated: 2025-01-03T23:00:46.671Z
NVD
Status : Awaiting Analysis
Published: 2025-01-03T01:15:08.003
Modified: 2025-01-03T23:15:06.903
Link: CVE-2024-43769
Redhat
No data.