Описание
In MPEG4Extractor, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution in the media extractor with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-111792351
Ссылки
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:o:google:android:10.0:*:*:*:*:*:*:*
EPSS
Процентиль: 45%
0.00222
Низкий
8.8 High
CVSS3
6.8 Medium
CVSS2
Дефекты
CWE-190
Связанные уязвимости
github
больше 3 лет назад
In MPEG4Extractor, there is a possible out of bounds write due to an integer overflow. This could lead to remote code execution in the media extractor with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-111792351
EPSS
Процентиль: 45%
0.00222
Низкий
8.8 High
CVSS3
6.8 Medium
CVSS2
Дефекты
CWE-190