CVE-2023-44129
CVSS V2 None
CVSS V3 None
Description
The vulnerability is that the Messaging ("com.android.mms") app patched by LG forwards attacker-controlled intents back to the attacker in the exported "com.android.mms.ui.QClipIntentReceiverActivity" activity. The attacker can abuse this functionality by launching this activity and then sending a broadcast with the "com.lge.message.action.QCLIP" action. The attacker can send, e.g., their own data/clipdata and set Intent.FLAG_GRANT_* flags. After the attacker received that intent in the "onActivityResult()" method, they would have access to arbitrary content providers that have the `android:grantUriPermissions="true"` flag set.
Overview
- CVE ID
- CVE-2023-44129
- Assigner
- LGE
- Vulnerability Status
- PUBLISHED
- Published Version
- 2023-09-27T14:10:56.347Z
- Last Modified Date
- 2023-09-27T14:10:56.347Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://lgsecurity.lge.com/bulletins/mobile#updateDetails | vendor-advisory |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2023-44129 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-44129 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-06-25 12:21:58 | Added to TrackCVE |