In the Android kernel in F2FS touch driver there is a possible out of bounds read due to improper input validation. This could lead to local information disclosure with system execution privileges needed. User interaction is not needed for exploitation.
References
Link | Resource |
---|---|
https://source.android.com/security/bulletin/pixel/2019-09-01 | Patch Vendor Advisory |
https://usn.ubuntu.com/4527-1/ | Third Party Advisory |
Configurations
History
14 Oct 2022, 01:36
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:o:canonical:ubuntu_linux:14.04:*:*:*:esm:*:*:* cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:esm:*:*:* |
|
References | (UBUNTU) https://usn.ubuntu.com/4527-1/ - Third Party Advisory |
Information
Published : 2019-09-06 22:15
Updated : 2024-02-04 20:20
NVD link : CVE-2019-9453
Mitre link : CVE-2019-9453
CVE.ORG link : CVE-2019-9453
JSON object : View
Products Affected
- android
canonical
- ubuntu_linux
CWE
CWE-20
Improper Input Validation