Smart Lock Elevation of Privilege Vulnerability Allows Unauthorized Access to Settings

Smart Lock Elevation of Privilege Vulnerability Allows Unauthorized Access to Settings

CVE-2016-6769 · LOW Severity

AV:L/AC:L/AU:N/C:N/I:P/A:N

An elevation of privilege vulnerability in Smart Lock could enable a local malicious user to access Smart Lock settings without a PIN. This issue is rated as Moderate because it first requires physical access to an unlocked device where Smart Lock was the last settings pane accessed by the user. Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1. Android ID: A-29055171.

Learn more about our Cis Benchmark Audit For Google Android.