RaqibCTI
CVE

CVE-2023-21237

P2
Android Pixel Information Disclosure Vulnerability
Android · Pixel
Date added (CISA)
2024-03-05
Remediation due
2024-03-26
Known ransomware use
Not indicated
Remediation priority
P2past CISA due date

Description

Android Pixel contains a vulnerability in the Framework component, where the UI may be misleading or insufficient, providing a means to hide a foreground service notification. This could enable a local attacker to disclose sensitive information.

Source: NVD ↗ · CISA KEV Catalog ↗