CVE-2024-53834 β€” Out-of-bounds Read in Google Android

Severity
7.5HIGHNVD
EPSS
0.8%
top 26.21%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJan 3

Description

In sms_DisplayHexDumpOfPrivacyBuffer of sms_Utilities.c, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 3.9 | Impact: 3.6

Affected Packages1 packages

β–ΆCVEListV5google/androidAndroid kernel

πŸ”΄Vulnerability Details

3
CVEList
CVE-2024-53834: In sms_DisplayHexDumpOfPrivacyBuffer of sms_Utilities↗2025-01-03
β–Ά
GHSA
GHSA-3xpr-69r6-x5xc: In sms_DisplayHexDumpOfPrivacyBuffer of sms_Utilities↗2025-01-03
β–Ά
OSV
CVE-2024-53834: In sms_DisplayHexDumpOfPrivacyBuffer of sms_Utilities↗2024-12-01
β–Ά
CVE-2024-53834 β€” Out-of-bounds Read in Google Android | cvebase