CVE-2020-0279: Medium severity android vulnerability
In the AAC parser, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-131430997
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-0279?
CVE-2020-0279 has a moderate severity rating due to its potential for remote information disclosure.
How do I fix CVE-2020-0279?
To fix CVE-2020-0279, update your Android device to a version later than Android 11.0 that includes the security patch.
What impact does CVE-2020-0279 have on my Android device?
CVE-2020-0279 may allow attackers to access sensitive information remotely if the user interacts with the malicious AAC content.
What versions of Android are affected by CVE-2020-0279?
CVE-2020-0279 specifically affects Android 11.0 devices.
Is user interaction required to exploit CVE-2020-0279?
Yes, exploiting CVE-2020-0279 requires user interaction with specially crafted AAC content.