Skip to content
COOEY

EXPOSURES › CVE-2024-36971

CVE-2024-36971

HIGH ⌖ ON CISA KEV · EXPLOITED
DETAIL
SourceCISA-KEV · kev Published2024-08-07 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2024-36971 ↗
⚡ RCE ⌖ EXPLOITED IN THE WILD SHAME 85/100 rceexploited-in-wildransomwaresupply-chainunpatched

Android kernel RCE vulnerability actively exploited in the wild.

CVE-2024-36971 enables remote code execution in the Android kernel, allowing attackers to compromise devices running Android-based systems. This poses a severe risk to DIB organizations relying on Android devices for secure operations, as the vulnerability is actively being exploited and requires immediate patching to prevent unauthorized access.

Shame score — Active exploitation of a critical kernel RCE vulnerability indicates a failure in timely patching and security monitoring.

▸ RECOMMENDED ACTION  Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.

DESCRIPTION

Android contains an unspecified vulnerability in the kernel that allows for remote code execution. This vulnerability resides in Linux Kernel and could impact other products, including but not limited to Android OS.

AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.