VDB
CISA-2023-21149
CISA-2023-21149
PUBLISHED
Reported by google_android · Published June 28, 2023
In registerGsmaServiceIntentReceiver of ShannonRcsService.java, there is a possible way to activate/deactivate RCS service due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android kernelAndroid ID: A-270050709References: N/A
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | Android | Android kernel |
| n/a | Android | Android kernel, Android kernel |
Timeline
- Jun 28, 2023 CVE Published
- Dec 3, 2024 CVE Updated