High severity7.5NVD Advisory· Published Jan 21, 2025· Updated Jun 17, 2026
CVE-2024-49734
CVE-2024-49734
Description
In multiple functions of ConnectivityService.java, there is a possible way for a Wi-Fi AP to determine what site a device has connected to through a VPN due to side channel information disclosure. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4Patches
Vulnerability mechanics
References
1- source.android.com/security/bulletin/2025-01-01nvdVendor Advisory
News mentions
0No linked articles in our index yet.