VDB
GSD-2023-21237
GSD-2023-21237
PUBLISHED
CVSS 6.199999809265137 MEDIUM
In applyRemoteView of NotificationContentInflater.java, there is a possible way to hide foreground service notification due to misleading or insufficient UI. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-251586912
Risk Scores
CVSS v3.1
6.199999809265137
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | Android | Android-13 |
| android | 13.0 |
Timeline
- Jun 13, 2023 CVE Published
- Mar 5, 2024 PoC Published
- Feb 23, 2025 PoC Published
- Feb 2, 2026 PoC Published