VDB

GCVE-110-NCSC-2024-358

GCVE-110-NCSC-2024-358
Advisory PublishedCVSS 7.8/10
Vulnetix · Advisory published September 5, 2024
Improper Handling of Insufficient Permissions or Privileges

Weaknesses (CWE)

CWE-416Use After FreeCWE-126Buffer Over-readCWE-20Improper Input ValidationCWE-119Improper Restriction of Operations within the Bounds of a Memory BufferCWE-190Integer Overflow or WraparoundCWE-822Untrusted Pointer DereferenceCWE-120Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')CWE-562Return of Stack Variable AddressCWE-863Incorrect AuthorizationCWE-755Improper Handling of Exceptional ConditionsCWE-284Improper Access ControlCWE-926Improper Export of Android Application ComponentsCWE-285Improper AuthorizationCWE-648Incorrect Use of Privileged APIsCWE-280Improper Handling of Insufficient Permissions or PrivilegesCWE-22Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')CWE-476NULL Pointer Dereference

Risk Scores

CVSS 3.1
7.8/10
High · CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Affected Products

VendorProductVersionsPlatforms
googleandroid

References

advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory
advisory

Browse GCVE Records

74,132 records in the GCVE database · Updated July 20, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›