描述
A security vulnerability has been detected in BuzzFeed App 2024.9 on Android. This affects an unknown part of the file AndroidManifest.xml of the component com.buzzfeed.android. The manipulation leads to improper export of android application components. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used.
AI分析AI驱动
受影响产品
buzzfeedbuzzfeed
2024.9
参考资料
- https://github.com/KMov-g/androidapps/blob/main/com.buzzfeed.android.mdExploitThird Party Advisory
- https://github.com/KMov-g/androidapps/blob/main/com.buzzfeed.android.md#steps-to-reproduceExploitThird Party Advisory
- https://vuldb.com/?ctiid.320415Permissions RequiredVDB Entry
- https://vuldb.com/?id.320415Third Party AdvisoryVDB Entry
- https://vuldb.com/?submit.623584Third Party AdvisoryVDB Entry
- https://github.com/KMov-g/androidapps/blob/main/com.buzzfeed.android.mdExploitThird Party Advisory
- https://github.com/KMov-g/androidapps/blob/main/com.buzzfeed.android.md#steps-to-reproduceExploitThird Party Advisory