CVE-2021-0338
Summary
| CVE | CVE-2021-0338 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-02-10 17:15:00 UTC |
| Updated | 2022-06-28 14:11:00 UTC |
| Description | In SystemSettingsValidators, there is a possible permanent denial of service due to missing bounds checks on UI settings. This could lead to local denial of service with User execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10 Android-11Android ID: A-156260178 |
Risk And Classification
Problem Types: CWE-770
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Android Security Bulletin—February 2021 | Android Open Source Project | MISC | source.android.com | Patch, Vendor Advisory |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 610317 Google Android Devices February 2021 Security Patch Missing
- 610318 Google Android February 2021 Security Patch Missing for Huawei EMUI
- 610319 Google Android February 2021 Security Patch Missing for LGE
- 610320 Google Android February 2021 Security Patch Missing for Samsung
- 610330 Google Android April 2021 Security Patch Missing for Samsung
- 610332 Google Android April 2021 Security Patch Missing for LGE