VDB
CVE-2019-9233
CVE-2019-9233
PUBLISHED
In wpa_supplicant_8, there is a possible out of bounds read due to an incorrect bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-122529021
EPSS 0.31% · 54.7th percentile
Risk Scores
EPSS Score
0.31%
54.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ubuntu:20.04:LTS | wpa | 0, 2:2.9-1ubuntu2, 2:2.9-1ubuntu3 |
| Ubuntu:18.04:LTS | wpa | 2:2.6-15ubuntu2.5, 2:2.6-15ubuntu2.7, 0 |
Timeline
- Aug 21, 2019 CVE Published
- Apr 14, 2021 EPSS Score
- Jun 23, 2021 EPSS Score
- Aug 24, 2021 EPSS Score
- Oct 26, 2021 EPSS Score
- Jan 6, 2022 EPSS Score
- Feb 4, 2022 EPSS Score
- Feb 28, 2022 EPSS Score
- Apr 1, 2022 EPSS Score
- May 1, 2022 EPSS Score
- Jul 3, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
References
- https://ubuntu.com/security/CVE-2019-9233 third-party-advisory
- https://source.android.com/security/bulletin/android-10 third-party-advisory
- https://www.cve.org/CVERecord?id=CVE-2019-9233 third-party-advisory