In parseSecurityParamsFromXml of XmlUtil.java, there is a possible bypass of user specified wifi encryption protocol due to improperly used crypto. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-13Android ID: A-272755865
Metrics
Affected Vendors & Products
References
History
Wed, 04 Dec 2024 22:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: google_android
Published:
Updated: 2024-12-04T21:32:15.724Z
Reserved: 2022-11-03T00:00:00
Link: CVE-2023-21179

Updated: 2024-08-02T09:28:26.059Z

Status : Modified
Published: 2023-06-28T18:15:14.720
Modified: 2024-11-21T07:42:20.177
Link: CVE-2023-21179

No data.