In vring_init of external/headers/include/virtio/virtio_ring.h, there is a possible out of bounds write due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Metrics
Affected Vendors & Products
References
History
Thu, 31 Oct 2024 00:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
CPEs | cpe:2.3:o:google:android:-:*:*:*:*:*:*:* |
Fri, 25 Oct 2024 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Google
Google android Google pixel |
|
Weaknesses | CWE-787 | |
CPEs | cpe:2.3:h:google:pixel:*:*:*:*:*:*:*:* cpe:2.3:o:google:android:*:*:*:*:*:*:*:* |
|
Vendors & Products |
Google
Google android Google pixel |
|
Metrics |
cvssV3_1
|
Fri, 25 Oct 2024 10:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | In vring_init of external/headers/include/virtio/virtio_ring.h, there is a possible out of bounds write due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. | |
References |
|
MITRE
Status: PUBLISHED
Assigner: Google_Devices
Published: 2024-10-25T10:34:07.817Z
Updated: 2024-10-25T16:00:28.134Z
Reserved: 2024-09-16T19:21:19.200Z
Link: CVE-2024-47035
Vulnrichment
Updated: 2024-10-25T16:00:19.594Z
NVD
Status : Analyzed
Published: 2024-10-25T11:15:17.610
Modified: 2024-10-31T00:05:18.113
Link: CVE-2024-47035
Redhat
No data.