CVE-2019-1996
published 2019-02-28CVE-2019-1996: In avrc_pars_browse_rsp of avrc_pars_ct.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information…
PriorityP427medium6.5CVSS 3.0
AVAACLPRNUINSUCHINAN
EPSS
0.49%
39.2th percentile
In avrc_pars_browse_rsp of avrc_pars_ct.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure over Bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android-8.0 Android-8.1 Android-9. Android ID: A-111451066.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | android | — | — |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — |
CVSS provenance
nvdv3.06.5MEDIUMCVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
nvdv2.03.3LOWAV:A/AC:L/Au:N/C:P/I:N/A:N
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Android
CVE-2019-1996: Android Security Bulletin 2019-02-01
CVE: CVE-2019-1996
Severity: HIGH
Type: ID
Affected AOSP versions: 8
vendor_android·2019-02-01·CVSS 6.5
CVE-2019-1996 [MEDIUM] CVE-2019-1996: Android Security Bulletin 2019-02-01
CVE: CVE-2019-1996
Severity: HIGH
Type: ID
Affected AOSP versions: 8
Android Security Bulletin 2019-02-01
CVE: CVE-2019-1996
Severity: HIGH
Type: ID
Affected AOSP versions: 8.0, 8.1, 9
References: A-111451066
GHSA
GHSA-wjhc-765c-3mw9: In avrc_pars_browse_rsp of avrc_pars_ct
ghsa_unreviewed·2022-05-14
CVE-2019-1996 [MEDIUM] CWE-125 GHSA-wjhc-765c-3mw9: In avrc_pars_browse_rsp of avrc_pars_ct
In avrc_pars_browse_rsp of avrc_pars_ct.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure over Bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android-8.0 Android-8.1 Android-9. Android ID: A-111451066.
Kernel
btrfs: Don't submit any btree write bio if the fs has errors
kernel_security·2020-02-12
CVE-2019-19377 btrfs: Don't submit any btree write bio if the fs has errors
btrfs: Don't submit any btree write bio if the fs has errors
[BUG]
There is a fuzzed image which could cause KASAN report at unmount time.
BUG: KASAN: use-after-free in btrfs_queue_work+0x2c1/0x390
Read of size 8 at addr ffff888067cf6848 by task umount/1922
CPU: 0 PID: 1922 Comm: umount Tainted: G W 5.0.21 #1
Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.10.2-1ubuntu1 04/01/2014
Call Trace:
dump_stack+0x5b/0x8b
print_address_description+0x70/0x280
kasan_report+0x13a/0x19b
btrfs_queue_work+0x2c1/0x390
btrfs_wq_submit_bio+0x1cd/0x240
btree_submit_bio_hook+0x18c/0x2a0
submit_one_bio+0x1be/0x320
flush_write_bio.isra.41+0x2c/0x70
btree_write_cache_pages+0x3bb/0x7f0
do_writepages+0x5c/0x130
__writeback_single_inode+0xa3/0x9a0
writeback_single_inode+0x23d/0x390
write_inode_now+
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2019-02-28
Published