CVE-2023-4164: There is a possible information disclosure due to a missing permission check in Pixel Watch
Published Jan 2, 2024
·Updated
There is a possible information disclosure due to a missing permission check. This could lead to local information disclosure of health data with no additional execution privileges needed.
Affected Software
2 affected components
All of the following
Google Android
Google Pixel
Event History
Jan 2, 2024
CVE Published
09:20 PM
Data Sourced
09:20 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-4164?
CVE-2023-4164 is categorized as a moderate severity vulnerability due to potential information disclosure.
2
What type of data is affected by CVE-2023-4164?
CVE-2023-4164 affects local health data, allowing possible unauthorized access.
3
How do I fix CVE-2023-4164?
To mitigate CVE-2023-4164, ensure that the latest security updates for affected Google Android systems are applied.
4
Who is affected by CVE-2023-4164?
CVE-2023-4164 affects users of Google Android devices, specifically those without proper permission checks.
5
What are the potential consequences of CVE-2023-4164?
The consequences of CVE-2023-4164 include unauthorized local access to sensitive health data without needing additional execution privileges.