← Back

CVE-2019-2126

nvd nist
Published: Aug 20, 2019Modified: Nov 21, 2024

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

In ParseContentEncodingEntry of mkvparser.cc, there is a possible double free due to a missing reset of a freed pointer. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. Product: Android. Versions: Android-7.0 Android-7.1.1 Android-7.1.2 Android-8.0 Android-8.1 Android-9. Android ID: A-127702368.

Affected (12)

Show all products
1 product
Android
1 product
Fedora
1 product
Ubuntu Linux
1 product
Leap
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Google
Version 7.0
Version 7.1.1
Version 7.1.2
Version 8.0
Version 8.1
Version 9.0
Configuration B
2 vulnerable
Vulnerable SoftwareAffected Versions
Fedoraproject
Version 30
Version 31
Configuration C
3 vulnerable
Vulnerable SoftwareAffected Versions
Canonical
Version 16.04
Version 18.04
Version 19.04
Configuration D
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 15.1

Timeline

No history available yet.