In triggerAugmentedAutofillLocked and related functions of Session.java, it is possible for Augmented Autofill to display sensitive information to the user inappropriately. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-141703197
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://source.android.com/security/bulletin/2020-03-01 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: google_android
Published: 2020-03-10T19:55:51
Updated: 2024-08-04T05:47:40.437Z
Reserved: 2019-10-17T00:00:00
Link: CVE-2020-0031
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2020-03-10T20:15:20.710
Modified: 2020-03-11T12:47:22.767
Link: CVE-2020-0031
Redhat
No data.