Security Advisory
CVE-2019-2007
9.8
CRITICAL
Vulnerability Description
In getReadIndex and getWriteIndex of FifoControllerBase.cpp, there is a possible out-of-bounds write due to an integer overflow. This could lead to local escalation of privilege in the audio server with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-8.1 Android-9Android ID: A-120789744
Published Date
June 19, 2019
Official Source
NIST NVD Advisory