Medium severity5.5NVD Advisory· Published Mar 11, 2024· Updated Jun 17, 2026
CVE-2024-0047
CVE-2024-0047
Description
In writeUserLP of UserManagerService.java, device policies are serialized with an incorrect tag due to a logic error in the code. This could lead to local denial of service when policies are deserialized on reboot with no additional execution privileges needed. User interaction is not needed for exploitation.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
4- android.googlesource.com/platform/frameworks/base/+/3cd8a2c783fc736627b38f639fe4e239abcf6af1nvdPatch
- android.googlesource.com/platform/frameworks/base/+/bd5cc7f03256b328438b9bc3791c6b811a2f1f17nvdPatch
- android.googlesource.com/platform/frameworks/base/+/f516739398746fef7e0cf1437d9a40e2ad3c10bbnvdPatch
- source.android.com/security/bulletin/2024-03-01nvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.