Vulnerabilities > CVE-2020-27026 - Information Exposure Through Discrepancy vulnerability in Google Android 11.0

047910
CVSS 5.5 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
NONE
local
low complexity
google
CWE-203

Summary

During boot, the device unlock interface behaves differently depending on if a fingerprint registered to the device is present. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-79776455

Vulnerable Configurations

Part Description Count
OS
Google
1

Common Weakness Enumeration (CWE)