CVE-2021-0964: Buffer Overflow
In C2SoftMP3::process() of C2SoftMp3Dec.cpp, there is a possible out of bounds write due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-10 Android-11 Android-12 Android-9Android ID: A-193363621
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-0964?
The severity of CVE-2021-0964 is classified as high due to the possibility of remote information disclosure.
How do I fix CVE-2021-0964?
To fix CVE-2021-0964, users should update their Android devices to the latest security patch provided by Google.
Which Android versions are affected by CVE-2021-0964?
CVE-2021-0964 affects Android versions 9.0, 10.0, 11.0, and 12.0.
What is the impact of CVE-2021-0964?
The impact of CVE-2021-0964 is a potential out of bounds write due to a heap buffer overflow that may lead to information disclosure.
Does CVE-2021-0964 require user interaction for exploitation?
Yes, CVE-2021-0964 requires user interaction for exploitation.