CVE-2024-31337

In PVRSRVRGXKickTA3DKM of rgxta3d.c, there is a possible arbitrary code execution due to improper input validation. This could lead to local escalation of privilege in the kernel with no additional execution privileges needed. User interaction is not needed for exploitation.
References
Configurations

Configuration 1 (hide)

cpe:2.3:o:google:android:-:*:*:*:*:*:*:*

History

17 Dec 2024, 19:50

Type Values Removed Values Added
First Time Google android
Google
CVSS v2 : unknown
v3 : 8.4
v2 : unknown
v3 : 7.8
References () https://source.android.com/security/bulletin/2024-11-01 - () https://source.android.com/security/bulletin/2024-11-01 - Vendor Advisory
CPE cpe:2.3:o:google:android:-:*:*:*:*:*:*:*
CWE NVD-CWE-noinfo

Information

Published : 2024-11-13 18:15

Updated : 2024-12-17 19:50


NVD link : CVE-2024-31337

Mitre link : CVE-2024-31337

CVE.ORG link : CVE-2024-31337


JSON object : View

Products Affected

google

  • android