CVE-2024-53931

CVSS 3.1 Score 9.1 of 10 (high)

Details

Published Jan 6, 2025
Updated: Jan 23, 2025
CWE ID 732
CWE ID 922

Summary

CVE-2024-53931 is a vulnerability affecting the com.glitter.caller.screen, or iCaller, Caller Theme & Dialer app for Android. This issue allows any application, without requiring user interaction or specific permissions, to place phone calls by sending a carefully crafted intent to the com.glitter.caller.screen.DialerActivity component. This vulnerability could potentially be exploited for unauthorized call making, leading to privacy concerns and possible financial loss. Users are advised to update their iCaller app to the latest version or consider using alternative dialer apps to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share