In generate_jsimd_ycc_rgb_convert_neon of jsimd_arm64_neon.S, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution in an unprivileged process with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-120551338
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
History
21 Nov 2024, 04:40
Type | Values Removed | Values Added |
---|---|---|
References | () http://lists.opensuse.org/opensuse-security-announce/2019-11/msg00047.html - | |
References | () http://lists.opensuse.org/opensuse-security-announce/2019-11/msg00048.html - | |
References | () https://lists.apache.org/thread.html/rc800763a88775ac9abb83b3402bcd0913d41ac65fdfc759af38f2280%40%3Ccommits.mxnet.apache.org%3E - | |
References | () https://lists.debian.org/debian-lts-announce/2022/05/msg00048.html - | |
References | () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Y4QPASQPZO644STRFTLOD35RIRGWWRNI/ - | |
References | () https://security.gentoo.org/glsa/202003-23 - | |
References | () https://source.android.com/security/bulletin/2019-11-01 - Vendor Advisory | |
References | () https://usn.ubuntu.com/4190-1/ - Third Party Advisory |
07 Nov 2023, 03:09
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Information
Published : 2019-11-13 18:15
Updated : 2024-11-21 04:40
NVD link : CVE-2019-2201
Mitre link : CVE-2019-2201
CVE.ORG link : CVE-2019-2201
JSON object : View
Products Affected
canonical
- ubuntu_linux
- android
CWE
CWE-787
Out-of-bounds Write