CVE-2023-21267 Information
Aug 15, 2023
cve
Description
In doKeyguardLocked of KeyguardViewMediator.java there is a possible way to bypass lockdown mode with screen pinning due to a logic error in the code. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
Reference
https://source.android.com/security/bulletin/2023-08-01 https://android.googlesource.com/platform/frameworks/base/+/d18d8b350756b0e89e051736c1f28744ed31e93a
Share on: