CVE-2024-29745
5.5MEDIUMthere is a possible Information Disclosure due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for
Опубликовано: 4/5/2024Обновлено: 10/24/2025
Известная эксплуатируемая уязвимость CISA
Android Pixel contains an information disclosure vulnerability in the fastboot firmware used to support unlocking, flashing, and locking affected devices.
Требуемое действие:
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.
Срок:
2024-04-25
Описание
there is a possible Information Disclosure due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
ИИ-АнализНа базе ИИ
Затронутые продукты
googleandroid
-
Ссылки
- https://source.android.com/security/bulletin/pixel/2024-04-01Vendor Advisory
- https://source.android.com/security/bulletin/pixel/2024-04-01Vendor Advisory
- https://twitter.com/GrapheneOS/status/1775306481622995226Third Party Advisory
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2024-29745US Government Resource