CVE-2021-25369

CVE Published 2021-03-26
Related CWE(s) CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
Related Vendor(s) google
Related Product(s) android
Exploitation Reported (CISA KEV) 2022-11-08
CVSS 3 Base Score 6.2 (MEDIUM)
CVSS 3 Attack Complexity LOW
CVSS 3 Attack Vector LOCAL

An improper access control vulnerability in sec_log file prior to SMR MAR-2021 Release 1 exposes sensitive kernel information to userspace.

Cyber Threat Graph Context

Explore how this CVE relates to the wider threat graph

Associated CAPEC Patterns

References