Arbitrary Read Vulnerability in Android Product from Google
CVE-2024-56187
6.6MEDIUM
Key Information:
What is CVE-2024-56187?
A vulnerability in the ppcfw_deny_sec_dram_access function within ppcfw.c allows for potential arbitrary reading from TEE memory. This issue arises due to a logic flaw in the code, necessitating system execution privileges for exploitation. User intervention is not required, making the vulnerability a significant concern for local information disclosure.
Affected Version(s)
Android Android kernel