In FileInputStream::Read of file_input_stream.cc, there is a possible memory corruption due to uninitialized data. This could lead to remote code execution in an unprivileged process with no additional execution privileges needed. User interaction is needed for exploitation. Product: Android. Versions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9. Android ID: A-116114182.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://source.android.com/security/bulletin/2019-07-01 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: google_android
Published: 2019-07-08T17:34:48
Updated: 2024-08-04T18:42:50.233Z
Reserved: 2018-12-10T00:00:00
Link: CVE-2019-2105
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2019-07-08T18:15:11.167
Modified: 2020-08-24T17:37:01.140
Link: CVE-2019-2105
Redhat
No data.