Summary
In onCreate of SettingsBaseActivity.java, there is a possible unauthorized setting modification due to a permissions bypass.
Credit:
The information has been provided by Vendor
The original article can be found at:https://source.android.com/security/bulletin/2020-05-01
Details
This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-8.0.
Vulnerable Systems:
Android-8.1
Android-9
Android-10
Android-8.0
CVE Information:
Disclosure Timeline:
Published Date:5/14/2020