PUB-A-239701389 PUBLISHED CVSS 8.600000381469727 HIGH

In OEM_OnRequest of sced.cpp, there is a possible shell command execution due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.

Risk Scores

CVSS v4.0
8.600000381469727
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:A/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N

Affected Products

VendorProductVersions
Android:unknown:Pixel-family specific:0, Pixel-family specific, Pixel-family specific

Timeline

References

Open in Interactive Console →