Security Advisory

CVE-2013-6272

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-05-02 15:00:00
Last updated 2024-08-06 17:39:00
Assigner mitre
State PUBLISHED

Description

The NotificationBroadcastReceiver class in the com.android.phone process in Google Android 4.1.1 through 4.4.2 allows attackers to bypass intended access restrictions and consequently make phone calls to arbitrary numbers, send mmi or ussd codes, or hangup ongoing calls via a crafted application.