Início
Início
Tendências
Tendências
Vulnerabilidades
Vulnerabilidades
Notícias
Notícias
Pesquisadores
Pesquisadores
Por que dbugs?
Por que dbugs?
Configurações

David Riley

Pesquisador deGoogle Pixel C Team
#42984de 56,333
6.6CVSS total
Vulnerabilidades · 1
PT-2016-1504
6.6
2016-02-07
Google · Android · CVE-2016-0812
**Name of the Vulnerable Software and Affected Versions** Android versions 5.1.x through 5.1.0 Android versions 6.0 through 2016-02-01 **Description** The issue is related to the `interceptKeyBeforeDispatching` function in the Android operating system, which does not properly check for setup completion. This allows physically proximate attackers to bypass the Factory Reset Protection mechanism and delete data. The vulnerability is associated with inadequate access control. **Recommendations** For Android versions 5.1.x through 5.1.0, update to version 5.1.1 LMY49G or later. For Android versions 6.0 through 2016-02-01, ensure that updates after 2016-02-01 are applied to address the issue. As a temporary workaround, consider restricting access to sensitive data until the issue is resolved.