cve/2021/CVE-2021-25373.md
2025-09-29 21:09:30 +02:00

1.1 KiB

CVE-2021-25373

Description

Using unsafe PendingIntent in Customization Service prior to version 2.2.02.1 in Android O(8.x), 2.4.03.0 in Android P(9.0), 2.7.02.1 in Android Q(10.0) and 2.9.01.1 in Android R(11.0) allows local attackers to perform unauthorized action without permission via hijacking the PendingIntent.

POC

Reference

Github

No PoCs found on GitHub currently.