Cyber Resilience

CVE-2024-20052

Google Android 12.0 … 14.0

Published
01 April 2024
Modified
17 June 2026
Patch / advisory
CVSS Score v3.1 4.4
Click a component to see what it means
Raw vectorCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
EPSS Score 0.0010 1th percentile
Risk Priority 32 floored blend · peak EPSS

Summary

CVE-2024-20052 is a medium-severity an unspecified weakness vulnerability in Google Android. Its CVSS base score is 4.4 (Medium).

Operationally, ranked at the 1th percentile by exploit likelihood (below the median); it is not currently listed in the CISA KEV catalog.

EU & UK References

Vulnerability Data

In flashc, there is a possible information disclosure due to an uncaught exception. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS08541757; Issue ID: ALPS08541761.

CWE(s)

Related Threats

CVEs Like This One

CVE-2024-20053Same product: Google Android
CVE-2024-20049Same product: Google Android
CVE-2024-20050Same product: Google Android
CVE-2024-20022Same product: Google Android
CVE-2024-20054Same product: Google Android
CVE-2024-20023Same product: Google Android
CVE-2025-20635Same product: Google Android
CVE-2024-20107Same product: Google Android
CVE-2024-20143Same product: Google Android
CVE-2024-20104Same product: Google Android

Affected Assets

linuxfoundation
yocto
3.3
rdkcentral
rdk-b
2022q3
google
android
12.0, 13.0, 14.0
openwrt
openwrt
19.07.0, 21.02.0

Mitigating Controls

No mitigating controls mapped yet. The per-CVE control annotator has not reached this CVE.

References