CVE-2024-3108: Medium severity Motorola Time Weather Widget vulnerability
An implicit intent vulnerability was reported for Motorola’s Time Weather Widget application that could allow a local application to acquire the location of the device without authorization.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-3108?
CVE-2024-3108 is classified as a medium severity vulnerability due to its potential to expose user location data without authorization.
How does CVE-2024-3108 affect user privacy?
CVE-2024-3108 could allow unauthorized local applications to access the device's location information, compromising user privacy.
How do I fix CVE-2024-3108?
To fix CVE-2024-3108, update the Motorola Time Weather Widget application to the latest version to ensure security patches are applied.
Are all users of Motorola's Time Weather Widget affected by CVE-2024-3108?
Yes, all users of the affected versions of Motorola's Time Weather Widget are at risk from CVE-2024-3108.
What type of vulnerability is CVE-2024-3108?
CVE-2024-3108 is an implicit intent vulnerability that can be exploited by local applications to gain unauthorized access to device location.