In isFileUri of UriUtil.java, there... CVE-2021-0973

1.9 AV AC AU C I A
发布: 2021-12-15
修订: 2024-11-21

In isFileUri of UriUtil.java, there is a possible way to bypass ignoring file://URI attachment due to improper handling of case sensitivity. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-12Android ID: A-197328178

0%
暂无可用Exp或PoC
当前有1条受影响产品信息