CVE-2021-39697
published 2022-03-16CVE-2021-39697: In checkFileUriDestination of DownloadProvider.java, there is a possible way to bypass external storage private directories protection due to a missing…
PriorityP339high7.8CVSS 3.1
AVLACLPRLUINSUCHIHAH
EPSS
0.12%
2.5th percentile
In checkFileUriDestination of DownloadProvider.java, there is a possible way to bypass external storage private directories protection due to a missing permission check. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-12Android ID: A-200813547
Affected
7 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| platform | packages_providers_downloadprovider | >= 11:0 < 11:2022-03-01 | 11:2022-03-01 |
| platform | packages_providers_downloadprovider | >= 12:0 < 12:2022-03-01 | 12:2022-03-01 |
| platform | packages_providers_downloadprovider | >= 12L:0 < 12L:2022-03-01 | 12L:2022-03-01 |
CVSS provenance
nvdv3.17.8HIGHCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Android
CVE-2021-39697: Android Security Bulletin 2022-03-01
CVE: CVE-2021-39697
Severity: HIGH
Type: EoP
Affected AOSP versions: 11, 12
References: A-200813547
[2]
vendor_android·2022-03-01·CVSS 7.8
CVE-2021-39697 [HIGH] CVE-2021-39697: Android Security Bulletin 2022-03-01
CVE: CVE-2021-39697
Severity: HIGH
Type: EoP
Affected AOSP versions: 11, 12
References: A-200813547
[2]
Android Security Bulletin 2022-03-01
CVE: CVE-2021-39697
Severity: HIGH
Type: EoP
Affected AOSP versions: 11, 12
References: A-200813547
[2]
GHSA
GHSA-93fw-jj7x-4xh7: In checkFileUriDestination of DownloadProvider
ghsa_unreviewed·2022-03-17
CVE-2021-39697 [HIGH] CWE-281 GHSA-93fw-jj7x-4xh7: In checkFileUriDestination of DownloadProvider
In checkFileUriDestination of DownloadProvider.java, there is a possible way to bypass external storage private directories protection due to a missing permission check. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-12Android ID: A-200813547
OSV
CVE-2021-39697: In checkFileUriDestination of DownloadProvider
osv·2022-03-01
CVE-2021-39697 CVE-2021-39697: In checkFileUriDestination of DownloadProvider
In checkFileUriDestination of DownloadProvider.java, there is a possible way to bypass external storage private directories protection due to a missing permission check. This could lead to local escalation of privilege with User execution privileges needed. User interaction is not needed for exploitation.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-03-16
Published