CVE-2019-2187

In nfc_ncif_decode_rf_params of nfc_ncif.cc, there is a possible out of bounds read due to an integer underflow. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-124940143

Published : 2019-10-11 19:15 Updated : 2019-10-16 17:27

2.1
CVSS Score More info
Score 2.1 / 10
2.1
Vendor Product Version URI
Google Android 7.1.1 cpe:/o:google:android:7.1.1
Google Android 7.1.2 cpe:/o:google:android:7.1.2
Google Android 8.0 cpe:/o:google:android:8.0
Google Android 8.1 cpe:/o:google:android:8.1
Google Android 9.0 cpe:/o:google:android:9.0
Google Android 10.0 cpe:/o:google:android:10.0
  1. Google (1) Search CVE
    1. Android (6) Search CVE
      1. 7.1.1
      2. 7.1.2
      3. 8.0
      4. 8.1
      5. 9.0
      6. 10.0

CWE

ID Name Description Links
CWE-125 Out-of-bounds Read The software reads data past the end, or before the beginning, of the intended buffer. CVE

History of changes

Date Event
2019-10-16 17:27
2019-10-11 19:29

New CVE