PT-2021-4179 · Google · Android

Published

2021-09-01

·

Updated

2022-07-12

·

CVE-2021-0687

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Android versions 8.1 through 11
Description The issue is related to improper input validation in the ellipsize function of Layout.java, which could lead to a local denial of service with no additional execution privileges needed. User interaction is required for exploitation. This could result in a permanent denial of service.
Recommendations For Android versions 8.1 through 11, update to a version that includes the fix for this issue. As a temporary workaround, consider restricting user interaction with the vulnerable component until a patch is available.

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ASB-A-188913943
BDU:2021-04774
CVE-2021-0687

Affected Products

Android