Metrics
Affected Vendors & Products
Link | Providers |
---|---|
https://source.android.com/security/bulletin/2025-01-01 |
![]() ![]() |
Mon, 24 Mar 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-200 | |
Metrics |
cvssV3_1
|
Tue, 18 Feb 2025 20:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-203 | |
Metrics |
cvssV3_1
|
Wed, 22 Jan 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-203 | |
Metrics |
cvssV3_1
|
Tue, 21 Jan 2025 23:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | In multiple functions of ConnectivityService.java, there is a possible way for a Wi-Fi AP to determine what site a device has connected to through a VPN due to side channel information disclosure. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. | |
References |
|

Status: PUBLISHED
Assigner: google_android
Published: 2025-01-21T23:04:43.573Z
Updated: 2025-03-24T16:17:55.482Z
Reserved: 2024-10-18T00:37:14.971Z
Link: CVE-2024-49734

Updated: 2025-01-22T16:59:58.428Z

Status : Awaiting Analysis
Published: 2025-01-21T23:15:14.307
Modified: 2025-03-24T17:15:19.163
Link: CVE-2024-49734

No data.