Security Advisory

CVE-2020-0060

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-03-10 20:00:59
Last updated 2024-08-04 05:47:40
Assigner google_android
State PUBLISHED

Description

In query of SmsProvider.java and MmsSmsProvider.java, there is a possible permission bypass due to SQL injection. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-143229845