| |
Vulnerability CVE-2019-2228
Published: 2019-12-06 Modified: 2019-12-07
Description: |
In array_find of array.c, there is a possible out-of-bounds read due to an incorrect bounds check. This could lead to local information disclosure in the printer spooler with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-111210196 |
Type:
CWE-125 (Out-of-bounds Read)
CVSS2 => (AV:L/AC:L/Au:N/C:C/I:N/A:N)
CVSS Base Score |
Impact Subscore |
Exploitability Subscore |
4.9/10 |
6.9/10 |
3.9/10 |
Exploit range |
Attack complexity |
Authentication |
Local |
Low |
No required |
Confidentiality impact |
Integrity impact |
Availability impact |
Complete |
None |
None |
References: |
https://source.android.com/security/bulletin/2019-12-01
|
|
|
Copyright 2024, cxsecurity.com
|
|
|