CVE-2020-0460

In createNameCredentialDialog of CertInstaller.java, there exists the possibility of improperly installed certificates due to a logic error. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-163413737
References
Link Resource
https://source.android.com/security/bulletin/2020-12-01 Patch Vendor Advisory
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:o:google:android:11.0:*:*:*:*:*:*:*

Information

Published : 2020-12-14 14:15

Updated : 2021-07-21 04:39


NVD link : CVE-2020-0460

Mitre link : CVE-2020-0460


JSON object : View

CWE
CWE-287

Improper Authentication

Advertisement

dedicated server usa

Products Affected

google

  • android