Bluetooth Device Information Exposure in Android Audio Service
CVE-2024-0028
5.5MEDIUM
What is CVE-2024-0028?
In the Android Audio Service, a flaw exists that allows the acquisition of MAC addresses from nearby Bluetooth devices due to an insufficient permission check. This vulnerability facilitates local privilege escalation, enabling potential unauthorized actions without the need for user interaction.
Affected Version(s)
Android 16