CVE-2020-0243: Use After Free
In clearPropValue of MediaAnalyticsItem.cpp, there is a possible use-after-free due to improper locking. This could lead to local escalation of privilege in the media server with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-9 Android-10 Android-8.0 Android-8.1Android ID: A-151644303
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-0243?
CVE-2020-0243 is classified as a high severity vulnerability due to its potential for local privilege escalation.
What systems are affected by CVE-2020-0243?
CVE-2020-0243 affects Google Android versions 8.0, 8.1, 9.0, and 10.0.
How do I fix CVE-2020-0243?
To mitigate CVE-2020-0243, it is recommended to update your Android device to the latest security patch provided by Google.
Is user interaction required for CVE-2020-0243 to be exploited?
No, user interaction is not needed for the exploitation of CVE-2020-0243.
What type of vulnerability is CVE-2020-0243?
CVE-2020-0243 is categorized as a use-after-free vulnerability due to improper locking in the media server.