Loading HuntDB...

GHSA-v2m8-9547-v9wg

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

In updateIncomingFileConfirmNotification of BluetoothOppNotification.java, there is a possible permissions bypass. This could lead to local escalation of privilege allowing an attacker with physical possession of the device to transfer files to it over Bluetooth, with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-160691486

Related CVEs

Key Information

GHSA ID
GHSA-v2m8-9547-v9wg
Published
May 24, 2022 5:36 PM
Last Modified
May 24, 2022 5:36 PM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: September 20, 2025 6:29 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.