Security Advisory

CVE-2021-0517

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2021-06-21 16:01:35
Last updated 2024-08-03 15:40:01
Assigner google_android
CVSS score not scored
State PUBLISHED

Description

In updateCapabilities of ConnectivityService.java, there is a possible incorrect network state determination due to a logic error in the code. This could lead to biasing of networking tasks to occur on non-VPN networks, which could lead to remote information disclosure, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-179053823