In readCString of Parcel.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to arbitrary code execution if IntSan were not enabled, which it is by default. No additional execution privileges are required. User interaction is not needed for exploitation. Product: Android Versions: Android-10 Android ID: A-131859347
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: google_android

Published: 2020-03-15T21:15:47

Updated: 2024-08-04T05:47:40.431Z

Reserved: 2019-10-17T00:00:00

Link: CVE-2020-0086

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-03-15T22:15:13.973

Modified: 2024-11-21T04:52:52.867

Link: CVE-2020-0086

cve-icon Redhat

No data.