{ "id": "CVE-2024-40675", "sourceIdentifier": "security@android.com", "published": "2025-01-28T20:15:49.710", "lastModified": "2025-01-28T20:15:49.710", "vulnStatus": "Received", "cveTags": [], "descriptions": [ { "lang": "en", "value": "In parseUriInternal of Intent.java, there is a possible infinite loop due to improper input validation. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation." } ], "metrics": {}, "references": [ { "url": "https://android.googlesource.com/platform/frameworks/base/+/c6b5490ec659b5854fd429f453f75de5befa6359", "source": "security@android.com" }, { "url": "https://source.android.com/security/bulletin/2024-10-01", "source": "security@android.com" } ] }