In vring_size of external/headers/include/virtio/virtio_ring.h, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Metrics
Affected Vendors & Products
References
History
Mon, 28 Oct 2024 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
CPEs | cpe:2.3:o:google:android:-:*:*:*:*:*:*:* |
Fri, 25 Oct 2024 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Google
Google android Google pixel |
|
Weaknesses | CWE-190 CWE-787 |
|
CPEs | cpe:2.3:h:google:pixel:*:*:*:*:*:*:*:* cpe:2.3:o:google:android:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Google
Google android Google pixel |
|
Metrics |
cvssV3_1
|
Fri, 25 Oct 2024 10:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | In vring_size of external/headers/include/virtio/virtio_ring.h, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. | |
References |
|
MITRE
Status: PUBLISHED
Assigner: Google_Devices
Published: 2024-10-25T10:34:06.036Z
Updated: 2024-10-25T16:14:53.163Z
Reserved: 2024-09-16T19:14:14.859Z
Link: CVE-2024-47024
Vulnrichment
Updated: 2024-10-25T16:06:56.169Z
NVD
Status : Analyzed
Published: 2024-10-25T11:15:17.063
Modified: 2024-10-28T18:00:08.753
Link: CVE-2024-47024
Redhat
No data.