PT-2024-18771 · Google · Telephonyui

CVE-2024-20860

·

Published

2024-05-07

·

Updated

2024-05-07

CVSS v3.1

4.0

Medium

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions TelephonyUI versions prior to SMR May-2024 Release 1
Description The issue allows local attackers to reboot the device without proper permission due to an improper export of android application components vulnerability in TelephonyUI.
Recommendations For versions prior to SMR May-2024 Release 1, update to SMR May-2024 Release 1 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2024-20860

Affected Products

Telephonyui