PT-2026-49789 · Google · Android

Published

2026-06-16

·

Updated

2026-06-16

·

CVE-2026-0130

CVSS v3.1

3.5

Low

VectorAV:N/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N
In RtcpChunk::decodeRtcpChunk, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.

Fix

Out of bounds Read

Heap Based Buffer Overflow

Weakness Enumeration

Related Identifiers

CVE-2026-0130

Affected Products

Android