← Back

CVE-2024-34637

nvd nist
Published: Sep 4, 2024Modified: Sep 5, 2024

JSON object

Loading...
5.5
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
Exploitability: 1.8 / Impact: 3.6
Source: NVD

Description

Improper access control in WindowManagerService prior to SMR Sep-2024 Release 1 in Android 12, and SMR Jun-2024 Release 1 in Android 13 and Android 14 allows local attackers to bypass restrictions on starting services from the background.

Affected (6)

Products: Samsung: Android
1 product
Android
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Samsung
Version 12.0
Version 12.0 smr_sep-2024-r1
Version 13.0
Version 13.0 smr-jun-2024-r1
Version 14.0
Version 14.0 smr-jun-2024-r1

References (1)

Source: mobile.security@samsung.com
Vendor Advisory

Timeline

No history available yet.