CVE-2020-0497
15.12.2020, 16:15
In canUseBiometric of BiometricServiceBase, there is a missing permission check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-158481661Enginsight
Vendor | Product | Version |
---|---|---|
android | 11.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration