PT-2020-11547 · Google · Android

Published

2020-06-11

·

Updated

2020-06-12

·

CVE-2020-0187

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Android versions Android-10
Description The issue is related to an incomplete comparison in the engineSetMode function of BaseBlockCipher.java, which could lead to the selection of an incorrect cryptographic algorithm. This might result in local information disclosure without requiring additional execution privileges. User interaction is not necessary for exploitation.
Recommendations For Android version Android-10, update to a version that includes the fix for this issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2020-0187

Affected Products

Android