In addOrUpdateNetworkInternal and related functions of WifiConfigManager.java, there is a possible man in the middle attack due to improper certificate validation. This could lead to remote information disclosure with no additional execution privileges needed.
from Pocket https://ift.tt/3fay73i
via IFTTT
No comments:
Post a Comment