CVE-2020-24367: Bluestacks

High severity, CVSS 7.8. EPSS: 0.3% chance of exploitation in the next 30 days.

Incorrect file permissions in BlueStacks 4 through 4.230 on Windows allow a local attacker to escalate privileges by modifying a file that is later executed by a higher-privileged user.

Affected products

  • Bluestacks Bluestacks: from 4.0.0, up to and including 4.230

Published 2020-11-10. Last modified 2026-06-17.