Lucene search

K
prionPRIOn knowledge basePRION:CVE-2024-0020
HistoryFeb 16, 2024 - 8:15 p.m.

Design/Logic Flaw

2024-02-1620:15:00
PRIOn knowledge base
www.prio-n.com
1
onactivityresult
confused deputy
audio files
local disclosure
no execution privileges

6.7 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

9.1%

In onActivityResult of NotificationSoundPreference.java, there is a possible way to hear audio files belonging to a different user due to a confused deputy. This could lead to local information disclosure across users of a device with no additional execution privileges needed. User interaction is not needed for exploitation.

6.7 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

9.1%

Related for PRION:CVE-2024-0020