CVE-2021-40148: High severity Google Android vulnerability
In Modem EMM, there is a possible information disclosure due to a missing data encryption. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY00716585; Issue ID: ALPS05886933.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-40148?
CVE-2021-40148 has a severity rating of medium due to its potential for remote information disclosure.
How do I fix CVE-2021-40148?
To remediate CVE-2021-40148, apply the patch identified by MOLY00716585 provided by your device vendor.
Who is affected by CVE-2021-40148?
CVE-2021-40148 affects devices using certain versions of Android and MediaTek chipsets.
What type of vulnerability is CVE-2021-40148?
CVE-2021-40148 is classified as an information disclosure vulnerability due to missing data encryption.
Is user interaction required to exploit CVE-2021-40148?
No, user interaction is not needed for the exploitation of CVE-2021-40148.