In parseTrackFragmentRun of MPEG4Extractor.cpp, there is possible resource exhaustion due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-124389881
References
Link | Resource |
---|---|
https://source.android.com/security/bulletin/android-10 | Vendor Advisory |
https://source.android.com/security/bulletin/pixel/2020-06-01 | Not Applicable |
Configurations
History
No history.
Information
Published : 2020-03-15 22:15
Updated : 2022-04-22 19:03
NVD link : CVE-2020-0088
Mitre link : CVE-2020-0088
CVE.ORG link : CVE-2020-0088
JSON object : View
Products Affected
- android
CWE
CWE-400
Uncontrolled Resource Consumption