Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-55380
HistoryApr 23, 2023 - 12:00 a.m.

Google Android elevation of privilege vulnerability (CNVD-2023-55380)

2023-04-2300:00:00
China National Vulnerability Database
www.cnvd.org.cn
6
google android
elevation of privilege
fileutils.java
special elements
resource
file
attacker
privileges
vulnerability

EPSS

0

Percentile

9.9%

Google Android is a Linux-based open source operating system from Google. An elevation of privilege vulnerability exists in Google Android, which stems from the FileUtils.java component’s extractRelativePath store failing to correctly filter special elements in the path of a resource or file, which can be exploited by an attacker to elevate privileges.

EPSS

0

Percentile

9.9%

Related for CNVD-2023-55380