PT-2019-19568 · Google · Android

Published

2019-07-08

·

Updated

2019-09-30

·

CVE-2019-9353

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Android versions Android-10
Description The issue is related to a missing bounds check in Bluetooth, which could lead to a heap-based buffer overflow and remote code execution. This may result in remote information disclosure without requiring additional execution privileges. User interaction is necessary for exploitation.
Recommendations For Android version Android-10, apply the fix provided in Android ID A-123024201 to resolve the issue.

Fix

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-9353
ZDI-19-640

Affected Products

Android