In aes_cmac of aes_cmac.cc, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution in the bluetooth server with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9 Android-10 Android-8.0Android ID: A-151155194
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://source.android.com/security/bulletin/2020-06-01 |
![]() ![]() |
History
No history.

Status: PUBLISHED
Assigner: google_android
Published: 2020-06-10T17:12:15
Updated: 2024-08-04T05:47:40.743Z
Reserved: 2019-10-17T00:00:00
Link: CVE-2020-0117

No data.

Status : Modified
Published: 2020-06-10T18:15:10.327
Modified: 2024-11-21T04:52:56.227
Link: CVE-2020-0117

No data.