VDB

CISA-2023-40094

CISA-2023-40094 PUBLISHED

Reported by google_android · Published December 4, 2023

In keyguardGoingAway of ActivityTaskManagerService.java, there is a possible lock screen bypass due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

Affected Products

VendorProductVersions
GoogleAndroid14, 13, 12L
GoogleAndroid*, 13, 12

Timeline

  • Dec 4, 2023 CVE Published
  • Aug 28, 2024 CVE Updated

References

Open in Interactive Console →
$ Console Community · 100/wk Open console ›