CVE-2023-40098

Publication date

2023-12-04 22:40:54

Family

google_android

State

PUBLISHED

Description

In mOnDone of NotificationConversationInfo.java, there is a possible way to access app notification data of another user due to a logic error in the code. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.