In notifyNetworkTested and related functions of NetworkMonitor.java, there is a possible bypass of private DNS settings. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-9Android ID: A-122652057
References
Configurations
History
No history.
Information
Published : 2020-02-13 15:15
Updated : 2023-11-07 03:13
NVD link : CVE-2020-0028
Mitre link : CVE-2020-0028
CVE.ORG link : CVE-2020-0028
JSON object : View
Products Affected
- android
CWE