CVE-2024-44101NULL Pointer Dereference in Google Android

Severity
7.5HIGHNVD
EPSS
1.3%
top 20.49%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 25

Description

there is a possible Null Pointer Dereference (modem crash) due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages1 packages

CVEListV5google/androidAndroid kernel

🔴Vulnerability Details

2
GHSA
GHSA-6m58-669r-3v4p: there is a possible Null Pointer Dereference (modem crash) due to improper input validation2024-10-25
OSV
CVE-2024-44101: there is a possible Null Pointer Dereference (modem crash) due to improper input validation2024-10-01