In multiple settings screens, there are possible tapjacking attacks due to an insecure default value. This could lead to local escalation of privilege and permissions with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-9 Android-10 Android-11 Android-8.0 Android-8.1Android ID: A-155288585
References
Link | Resource |
---|---|
https://source.android.com/security/bulletin/2020-10-01 | Patch Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: google_android
Published: 2020-10-14T13:04:09
Updated: 2020-10-14T13:04:09
Reserved: 2019-10-17T00:00:00
Link: CVE-2020-0416
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-10-14T14:15:17.000
Modified: 2020-10-16T17:13:10.147
Link: CVE-2020-0416
JSON object: View
Redhat Information
No data.
CWE