There is a possible escalation of privilege due to improperly used crypto. This could lead to remote escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
The product uses a broken or risky cryptographic algorithm or protocol.
The product does not verify, or incorrectly verifies, the cryptographic signature for data.
Link | Tags |
---|---|
https://source.android.com/security/bulletin/pixel/2024-06-01 | vendor advisory |