CVE-2019-12936: Input Validation
Published Jun 23, 2019
·Updated
BlueStacks App Player 2, 3, and 4 before 4.90 allows DNS Rebinding for attacks on exposed IPC functions.
Affected Software
1 affected component
BlueStacks BlueStacks App Player<4.90
Event History
Jun 23, 2019
CVE Published
via MITRE·10:35 PM
Data Sourced
via MITRE·10:35 PM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2019-12936?
CVE-2019-12936 is classified as a medium severity vulnerability due to its potential to enable DNS Rebinding attacks.
2
How do I fix CVE-2019-12936?
To fix CVE-2019-12936, upgrade your BlueStacks App Player to version 4.90 or later.
3
What kind of attacks are possible through CVE-2019-12936?
CVE-2019-12936 allows DNS Rebinding attacks that can exploit exposed IPC functions.
4
Which versions of BlueStacks are affected by CVE-2019-12936?
BlueStacks App Player versions 2, 3, and 4 prior to version 4.90 are affected by CVE-2019-12936.
5
How can I tell if I'm vulnerable to CVE-2019-12936?
If you are using any version of BlueStacks App Player before 4.90, you are vulnerable to CVE-2019-12936.