MEDIUM
server/telecom/CallsManager.java in Telephony in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 does not properly consider whether a device is provisioned, which allows physically proximate attackers to bypass the Factory Reset Protection protection mechanism and delete data via unspecified vectors, aka internal bug 26303187
Published Apr 18, 2016
6.1
MEDIUMCVSS 3.0
EPSS 0.18%
Description
Affected products
Remediation
Metrics
References (2)
Change history (0)
No recorded changes yet.