7.5

CVE-2024-44100

Android before 2024-10-05 on Google Pixel devices allows information disclosure in the modem component, A-299774545.

Data is provided by the National Vulnerability Database (NVD)
GoogleAndroid Version < 2024-10-05
   GooglePixel Version-
   GooglePixel 2 Version-
   GooglePixel 2 Xl Version-
   GooglePixel 3 Version-
   GooglePixel 3 Xl Version-
   GooglePixel 3a Version-
   GooglePixel 3a Xl Version-
   GooglePixel 4 Version-
   GooglePixel 4 Xl Version-
   GooglePixel 4a Version-
   GooglePixel 4a 5g Version-
   GooglePixel 5 Version-
   GooglePixel 5a Version-
   GooglePixel 6 Version-
   GooglePixel 6 Pro Version-
   GooglePixel 6a Version-
   GooglePixel 7 Version-
   GooglePixel 7 Pro Version-
   GooglePixel 7a Version-
   GooglePixel 8 Version-
   GooglePixel 8 Pro Version-
   GooglePixel 8a Version-
   GooglePixel 9 Version-
   GooglePixel 9 Pro Version-
   GooglePixel 9 Pro Fold Version-
   GooglePixel C Version-
   GooglePixel Fold Version-
   GooglePixel Pro Xl Version-
   GooglePixel Slate Version-
   GooglePixel Tablet Version-
   GooglePixel Xl Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.06% 0.197
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
134c704f-9b21-4f2e-91b3-4a467353bcc0 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
CWE-276 Incorrect Default Permissions

During installation, installed file permissions are set to allow anyone to modify those files.