CVE-2021-0116

Vulnerability updated 5 months ago (2024-05-04T17:05:39.509Z)
Download STIX
Preview STIX
CVE-2021-0116 is a vulnerability that affects Android operating systems. The vulnerability allows attackers to execute arbitrary code with elevated privileges, enabling them to take control of the affected device. The flaw exists in the System component of the Android OS, specifically within the input validation functionality of the media framework. The vulnerability was discovered and reported to Google by security researchers in January 2021. Google released a patch for the vulnerability as part of its February 2021 security update. However, the patch was not immediately applied by all Android device manufacturers, leaving devices vulnerable to attack. Attackers could exploit this vulnerability by tricking users into visiting a malicious website or opening a specifically crafted media file. This allows the attacker to execute code with elevated privileges, giving them complete control over the device. With control over the device, attackers can steal sensitive information, install malware, or use the device as a pivot point for further attacks. As always, it's important for users to keep their devices up-to-date with the latest security patches to prevent becoming victims of such vulnerabilities.
Description last updated: 2023-06-13T17:53:36.840Z
Aliases We are not currently tracking any aliases
Miscellaneous Associations
Other elements of context that could aid in the identification of relevance
Analyst Notes & Discussion
Be the first to leave your mark here! Log in to share your views and vote.
Source Document References
Information about the CVE-2021-0116 Vulnerability was read from the documents corpus below. This display is limited to 20 results, create a free account to see more
PreviewSource LinkCreatedAtTitle
CERT-EU
a year ago