CVE-2024-11003 - How Local Attackers Could Exploit needrestart Before v3.8 for Arbitrary Command Execution
TL;DR:
A serious vulnerability (CVE-2024-11003) in needrestart (before version 3.8) lets local attackers run shell commands as the user running needrestart. This is
CVE-2023-21270 - How Incorrect Permission Handling in Android Allows Privilege Escalation
CVE-2023-21270 is a security vulnerability discovered in the restorePermissionState function, located in Android's PermissionManagerServiceImpl.java. This flaw can allow an app to keep