Technical Severity
MEDIUM
CVSS v3.1 Metrics
5.5
/ 10
Minimal Risk
Critical
Vector Specification
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Exploitation Likelihood
EPSS Prediction
0.21
%
Predictive Probability
Percentile Rank
42.5
th
Documented as more likely to be exploited than 42.5% of known CVEs.
Detection Date
Apr 04, 2024
Remediation Due
Apr 25, 2024
CISA Catalog Active
Threat Analysis
Android Pixel contains an information disclosure vulnerability in the fastboot firmware used to support unlocking, flashing, and locking affected devices.
Remediation Directive
Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.