Android Pixel Information Disclosure Vulnerability

Added to KEV
2024-04-04
Federal due date
2024-04-25
Vendor
Android
Product
Pixel
EPSS
42.6th percentile (score 0.002, as of 2026-06-08)
NVD CVSS v3.1
Ransomware use
Unknown
Upstream
https://nvd.nist.gov/vuln/detail/CVE-2024-29745

CISA short description

Android Pixel contains an information disclosure vulnerability in the fastboot firmware used to support unlocking, flashing, and locking affected devices.

Required action

Apply mitigations per vendor instructions or discontinue use of the product if mitigations are unavailable.

EPSS percentile is the FIRST.org exploit-probability ranking as of the date noted above; it moves daily. CVSS reflects NVD's analysis at time of publication.