In ppmp_unprotect_buf of drm_fw.c, there is a possible compromise of protected memory due to a logic error in the code. This could lead to local escalation of privilege to TEE with no additional execution privileges needed. User interaction is not needed for exploitation.
CVSS
No CVSS.
References
Link | Resource |
---|---|
https://source.android.com/security/bulletin/pixel/2024-03-01 | Vendor Advisory |
https://source.android.com/security/bulletin/pixel/2024-03-01 | Vendor Advisory |
Configurations
History
03 Apr 2025, 15:51
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:o:google:android:13.0:*:*:*:*:*:*:* | |
References | () https://source.android.com/security/bulletin/pixel/2024-03-01 - Vendor Advisory | |
First Time |
Google android
|
11 Mar 2024, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-03-11 19:15
Updated : 2025-04-03 15:51
NVD link : CVE-2024-25986
Mitre link : CVE-2024-25986
JSON object : View
Products Affected
- android
CWE
No CWE.