In getIntentForIntentSender of ActivityManagerService.java, there is a possible way to access user metadata due to a pending intent. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
The product uses or accesses a resource that has not been initialized.
Link | Tags |
---|---|
https://source.android.com/docs/security/bulletin/pixel/2018-06-01 | vendor advisory |