In lwis_initialize_transaction_fences of lwis_fence.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 22 Jul 2025 22:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:o:google:android:-:*:*:*:*:*:*:* |
Tue, 20 Aug 2024 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-787 | |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Google_Devices
Published:
Updated: 2024-08-20T17:06:05.803Z
Reserved: 2024-04-19T15:12:10.955Z
Link: CVE-2024-32921
Updated: 2024-08-02T02:20:35.670Z
Status : Analyzed
Published: 2024-06-13T21:15:55.900
Modified: 2025-07-22T21:56:28.887
Link: CVE-2024-32921
No data.
OpenCVE Enrichment
Updated: 2025-07-13T11:13:54Z
Weaknesses