PT-2019-16008 · Google · Android

Publicado

2019-02-28

·

Atualizado

2021-07-21

·

CVE-2019-1992

CVSS v2.0

7.6

Alta

VetorAV:N/AC:H/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Android versions 7.0 through 9
Description A possible use-after-free issue due to a race condition exists in the bta hl sdp query results function of bta hl main.cc. This could lead to remote code execution with no additional execution privileges needed. User interaction is required for exploitation.
Recommendations For Android versions 7.0 through 9, update to a version that contains a fix for this issue.

Correção

Race Condition

Use After Free

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2019-1992

Produtos afetados

Android