In the Android kernel in F2FS touch driver there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with system execution privileges needed. User interaction is not needed for exploitation.
References
Link | Resource |
---|---|
https://source.android.com/security/bulletin/pixel/2019-09-01 | Patch Vendor Advisory |
https://usn.ubuntu.com/4527-1/ | Third Party Advisory |
https://source.android.com/security/bulletin/pixel/2019-09-01 | Patch Vendor Advisory |
https://usn.ubuntu.com/4527-1/ | Third Party Advisory |
Configurations
History
21 Nov 2024, 04:51
Type | Values Removed | Values Added |
---|---|---|
References | () https://source.android.com/security/bulletin/pixel/2019-09-01 - Patch, Vendor Advisory | |
References | () https://usn.ubuntu.com/4527-1/ - Third Party Advisory |
Information
Published : 2019-09-06 22:15
Updated : 2024-11-21 04:51
NVD link : CVE-2019-9453
Mitre link : CVE-2019-9453
CVE.ORG link : CVE-2019-9453
JSON object : View
Products Affected
canonical
- ubuntu_linux
- android
CWE
CWE-20
Improper Input Validation