CVE-2024-0031: Input Validation
In attpbuildreadbytypevaluecmd of attprotocol.cc , there is a possible out of bounds write due to improper input validation. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
Affected Software
Remediation
Patch Available
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2024-0031?
CVE-2024-0031 is considered a critical vulnerability that could lead to remote code execution.
How do I fix CVE-2024-0031?
To mitigate CVE-2024-0031, users should update their Android devices to the latest security patches provided by Google.
Which versions of Android are affected by CVE-2024-0031?
CVE-2024-0031 affects Android versions 11.0, 12.0, 12.1, 13.0, and 14.0.
Is user interaction required for exploiting CVE-2024-0031?
No, user interaction is not required for exploiting CVE-2024-0031.
What type of vulnerability is CVE-2024-0031 classified as?
CVE-2024-0031 is classified as a possible out of bounds write vulnerability due to improper input validation.