CVE-2019-2041: High severity android vulnerability
In the configuration of NFC modules on certain devices, there is a possible failure to distinguish individual devices due to an insecure default value. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitation. Product: Android. Versions: Android-8.1 Android-9. Android ID: A-122034690.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2019-2041?
CVE-2019-2041 has a severity level classified as moderate due to its potential for local privilege escalation.
How do I fix CVE-2019-2041?
To fix CVE-2019-2041, update the affected Android devices to the latest security patches provided by Google.
What devices are affected by CVE-2019-2041?
CVE-2019-2041 affects Google Android versions 8.1 and 9.0 on certain devices.
Is user interaction required for CVE-2019-2041 exploitation?
Yes, user interaction is required to exploit CVE-2019-2041 for local privilege escalation.
What type of vulnerability is CVE-2019-2041?
CVE-2019-2041 is a configuration vulnerability in NFC modules that can result in failing to distinguish individual devices.