CVE-2020-0417
EUVD-2020-191914.07.2021, 14:15
In setNiNotification of GpsNetInitiatedHandler.java, there is a possible permissions bypass due to an empty mutable PendingIntent. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-8.1 Android-9Android ID: A-154319182Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| android | 8.1 | |
| android | 9.0 | |
| android | 10.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration