CVE-2024-49747 - How a Logic Flaw in Bluetooth’s GATT Server Could Let Hackers Run Code Remotely
Bluetooth is everywhere – in our headphones, smartphones, TVs, cars. It feels as reliable and as safe as the air we breathe. But sometimes, serious bugs
CVE-2024-49742 - Hiding Apps with Notification Access in Android Settings via Missing Permission Check
Summary
On May 24, 2024, a vulnerability tracked as CVE-2024-49742 was discovered in the Android Open Source Project (AOSP), specifically in the NotificationAccessConfirmationActivity.java file.
CVE-2024-49737 - Escalating Privileges via taskFragmentOperation in Android's WindowOrganizerController
In early 2024, security researchers discovered a significant vulnerability in Android's system component — specifically within WindowOrganizerController.java. The flaw, registered as CVE-2024-49737, allows
CVE-2024-49738 - Deep Dive into the Android Parcel.cpp writeInplace Out-of-Bounds Write Exploit
A new security vulnerability, CVE-2024-49738, was discovered in Android's core codebase. This bug is particularly concerning because it allows for a local privilege
CVE-2024-49734 - Wi-Fi APs Can Peek Through VPNs on Android—How a Side Channel in ConnectivityService.java Leaks Your Browsing
A newly disclosed Android vulnerability, CVE-2024-49734, is raising concerns for privacy advocates and VPN users. The issue lives in Android's ConnectivityService.java and
Episode
00:00:00
00:00:00