SOC status:Duty analyst on shift

UK Cyber Defence
VulnerabilityModified

CVE-2024-32912

there is a possible persistent Denial of Service due to test/debugging code left in a production build.

MEDIUM 5.5EPSS 0.07%

Does this matter?

Lower severity and a low EPSS score (0.07%). Track it; it rarely justifies an emergency change on its own.

Description

there is a possible persistent Denial of Service due to test/debugging code left in a production build. This could lead to local denial of service of impaired use of the device with no additional execution privileges needed. User interaction is not needed for exploitation.

CVSS 3.1
5.5 MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
EPSS
0.07% probability · 0th percentile
CISA KEV
Not listed
Weakness
CWE-400
Affected
google/android
Source
dsap-vuln-management@google.com

Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.