Security Advisory

CVE-2019-2004

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-06-19 19:51:16
Last updated 2024-08-04 18:35:52
Assigner google_android
CVSS score not scored
State PUBLISHED

Description

In publishKeyEvent, publishMotionEvent and sendUnchainedFinishedSignal of InputTransport.cpp, there are uninitialized data leading to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9Android ID: A-115739809