CVE-2024-43096

All FrameworksAndroidCWE-787CVE-2024-43096

CVE-2024-43096

State: PUBLISHED · Published: 2025-01-21 · Updated: 2025-03-19 · Assigner: google_android
Description
In build_read_multi_rsp of gatt_sr.cc, there is a possible out of bounds write due to a missing bounds check. This could lead to remote (proximal/adjacent) code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2024/43xxx/CVE-2024-43096.json