CVE-2024-20056
published 2024-05-06CVE-2024-20056: In preloader, there is a possible escalation of privilege due to an insecure default value. This could lead to local escalation of privilege with System…
PriorityP428medium6.7CVSS 3.1
AVLACLPRHUINSUCHIHAH
EPSS
0.09%
0.6th percentile
In preloader, there is a possible escalation of privilege due to an insecure default value. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08528185; Issue ID: ALPS08528185.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| openwrt | openwrt | — | — |
| openwrt | openwrt | — | — |
| openwrt | openwrt | — | — |
| rdkcentral | rdk-b | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Android
CVE-2024-20056: preloader
vendor_android·2024-05-01·CVSS 6.7
CVE-2024-20056 [MEDIUM] CVE-2024-20056: preloader
Android Security Bulletin 2024-05-01
CVE: CVE-2024-20056
Severity: HIGH
Component: preloader
References: A-327973818
M-ALPS08528185
*
GHSA
GHSA-826p-p2mp-vgq9: In preloader, there is a possible escalation of privilege due to an insecure default value
ghsa_unreviewed·2024-05-06
CVE-2024-20056 [MEDIUM] CWE-20 GHSA-826p-p2mp-vgq9: In preloader, there is a possible escalation of privilege due to an insecure default value
In preloader, there is a possible escalation of privilege due to an insecure default value. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08528185; Issue ID: ALPS08528185.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2024-05-06
Published