Vulnerabilities > CVE-2020-0382 - Improper Handling of Exceptional Conditions vulnerability in Google Android 10.0/11.0

047910
CVSS 2.3 - LOW
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
HIGH
Confidentiality impact
LOW
Integrity impact
NONE
Availability impact
NONE
local
low complexity
google
CWE-755

Summary

In RunInternal of dumpstate.cpp, there is a possible user consent bypass due to an uncaught exception. This could lead to local information disclosure of bug report data with System execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11 Android-10Android ID: A-152944488

Vulnerable Configurations

Part Description Count
OS
Google
2