CVE Vulnerabilities

CVE-2024-49736

Operator Precedence Logic Error

Published: Jan 21, 2025 | Modified: Mar 24, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

In onClick of MainClear.java, there is a possible way to trigger factory reset without explicit user consent due to a logic error in the code. This could lead to local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.

Weakness

The product uses an expression in which operator precedence causes incorrect logic to be used.

Potential Mitigations

References