Common vulnerabilities and Exposures (CVE)

Skip to main content

Required CVE Record Information

Description

In multiple functions of AppOpsService.java, there is a possible way for unprivileged apps to read their own restrictRead app-op states due to a logic error in the code. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

Product Status

Learn more

Versions 2 Total

Default Status: unaffected

affected

Authorized Data Publishers