PT-2026-49799 · Google · Android

Published

2026-06-16

·

Updated

2026-06-16

·

CVE-2026-0140

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
In RtpPacket::decodePacket, there is a possible out-of-bounds read due to an integer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.

Fix

Integer Overflow

Out of bounds Read

Weakness Enumeration

Related Identifiers

CVE-2026-0140

Affected Products

Android