server/notification/NotificationManagerService.java in the Notification Manager Service in Android 6.x prior to 2016-09-01 and 7.0 prior to 2016-09-01 lacks uid checks, which allows malicious users to bypass intended restrictions on method calls via a crafted application, aka internal bug 29421441.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
google android 7.0 |
||
google android 6.0 |
||
google android 6.0.1 |