
CVE-2019-2107 – Android 7 - 9 VideoPlayer - 'ihevcd_parse_pps' Out-of-Bounds Write
https://notcve.org/view.php?id=CVE-2019-2107
08 Jul 2019 — In ihevcd_parse_pps of ihevcd_parse_headers.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. Product: Android. Versions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9. • https://packetstorm.news/files/id/153628 • CWE-787: Out-of-bounds Write •

CVE-2019-2106
https://notcve.org/view.php?id=CVE-2019-2106
08 Jul 2019 — In ihevcd_sao_shift_ctb of ihevcd_sao.c, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. Product: Android. Versions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9. • https://source.android.com/security/bulletin/2019-07-01 • CWE-787: Out-of-bounds Write •

CVE-2019-2105
https://notcve.org/view.php?id=CVE-2019-2105
08 Jul 2019 — In FileInputStream::Read of file_input_stream.cc, there is a possible memory corruption due to uninitialized data. This could lead to remote code execution in an unprivileged process with no additional execution privileges needed. User interaction is needed for exploitation. Product: Android. Versions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9. • https://source.android.com/security/bulletin/2019-07-01 • CWE-908: Use of Uninitialized Resource •

CVE-2019-2104
https://notcve.org/view.php?id=CVE-2019-2104
08 Jul 2019 — In HIDL, safe_union, and other C++ structs/unions being sent to application processes, there are uninitialized fields. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android-8.0 Android-8.1 Android-9. • https://source.android.com/security/bulletin/2019-07-01 • CWE-908: Use of Uninitialized Resource •

CVE-2018-9561
https://notcve.org/view.php?id=CVE-2018-9561
19 Jun 2019 — In llcp_util_parse_connect of llcp_util.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9Android ID: A-111660010 En llcp_util_parse_connect of llcp_util.cc, hay una posible lectura fuera de límite debido a una falta de comprobación de límites. Esto ... • https://source.android.com/security/bulletin/2019-03-01 • CWE-125: Out-of-bounds Read •

CVE-2019-2003
https://notcve.org/view.php?id=CVE-2019-2003
19 Jun 2019 — In addLinks of Linkify.java, there is a possible phishing vector due to an unusual root cause. This could lead to remote code execution or misdirection of clicks with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9Android ID: A-116321860 En addLinks de Linkify.java, existe un posible vector de phishing debido a una causa raíz inusual. Esto podría provocar la ejecución re... • https://source.android.com/security/bulletin/2019-03-01 • CWE-264: Permissions, Privileges, and Access Controls •

CVE-2019-2022
https://notcve.org/view.php?id=CVE-2019-2022
19 Jun 2019 — In rw_t3t_act_handle_fmt_rsp and rw_t3t_act_handle_sro_rsp of rw_t3t.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9Android ID: A-120506143 En rw_t3t_act_handle_fmt_rsp and rw_t3t_act_handle_sro_rsp of rw_t3t.cc, hay una posible lectura fuera de l... • https://source.android.com/security/bulletin/2019-03-01 • CWE-125: Out-of-bounds Read •

CVE-2019-2021
https://notcve.org/view.php?id=CVE-2019-2021
19 Jun 2019 — In rw_t3t_act_handle_ndef_detect_rsp of rw_t3t.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9Android ID: A-120428041 En rw_t3t_act_handle_ndef_detect_rsp of rw_t3t.cc, hay una posible lectura fuera de límite debido a una falta de comprobación de ... • https://source.android.com/security/bulletin/2019-03-01 • CWE-125: Out-of-bounds Read •

CVE-2019-2020
https://notcve.org/view.php?id=CVE-2019-2020
19 Jun 2019 — In llcp_dlc_proc_rr_rnr_pdu of llcp_dlc.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction needed for exploitation.Product: AndroidVersions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9Android ID: A-116788646 En llcp_dlc_proc_rr_rnr_pdu of llcp_dlc.cc, hay una posible lectura fuera de límite debido a una falta de comprobación de límites. Esto pod... • https://source.android.com/security/bulletin/2019-03-01 • CWE-125: Out-of-bounds Read •

CVE-2019-2019
https://notcve.org/view.php?id=CVE-2019-2019
19 Jun 2019 — In ce_t4t_data_cback of ce_t4t.cc, there is a possible out-of-bound read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9Android ID: A-115635871 En ce_t4t_data_cback of ce_t4t.cc, hay una posible lectura fuera de límite debido a una falta de comprobación de límites. Esto podría conducir a ... • https://source.android.com/security/bulletin/2019-03-01 • CWE-125: Out-of-bounds Read •