CVE-2024-49748

All FrameworksAndroidCWE-787CVE-2024-49748

CVE-2024-49748

State: PUBLISHED · Published: 2025-01-21 · Updated: 2025-03-17 · Assigner: google_android
Description
In gatts_process_primary_service_req of gatt_sr.cc, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2024/49xxx/CVE-2024-49748.json