CVE-2019-2053 PUBLISHED

In wnm_parse_neighbor_report_elem of wnm_sta.c, there is a possible out-of-bounds read due to missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9 Android ID: A-122074159

EPSS 0.02% · 3.8th percentile

Risk Scores

EPSS Score
0.02%
3.8th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:14.04:LTSwpa2.1-0ubuntu1.7+esm1, 2.1-0ubuntu1.7, 2.1-0ubuntu1.6
Ubuntu:16.04:LTSwpa2.4-0ubuntu6.7, 2.4-0ubuntu3, 2.4-0ubuntu4
Ubuntu:18.04:LTSwpa2:2.6-15ubuntu2.8+esm1, 2:2.6-15ubuntu2.8, 2:2.6-15ubuntu2.7

Timeline

References

Open in Interactive Console →