Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2024-0048

Опубликовано: 11 мар. 2024
Источник: ubuntu
Приоритет: medium
CVSS3: 7.8

Описание

In Session of AccountManagerService.java, there is a possible method to retain foreground service privileges due to incorrect handling of null responses. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

РелизСтатусПримечание
devel

ignored

esm-apps/bionic

ignored

esm-apps/focal

ignored

esm-apps/jammy

ignored

esm-apps/noble

ignored

focal

ignored

jammy

ignored

mantic

ignored

end of life, was needs-triage
noble

ignored

oracular

ignored

Показывать по

РелизСтатусПримечание
devel

ignored

esm-apps/bionic

ignored

esm-apps/focal

ignored

esm-apps/jammy

ignored

esm-apps/noble

ignored

esm-apps/xenial

ignored

focal

ignored

jammy

ignored

mantic

ignored

end of life, was needs-triage
noble

ignored

Показывать по

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
nvd
почти 2 года назад

In Session of AccountManagerService.java, there is a possible method to retain foreground service privileges due to incorrect handling of null responses. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS3: 8.4
github
почти 2 года назад

In Session of AccountManagerService.java, there is a possible method to retain foreground service privileges due to incorrect handling of null responses. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

7.8 High

CVSS3