Uninitialized Data in libhevc: Remote Information Disclosure Vulnerability in Android-10 (A-112552517)

Uninitialized Data in libhevc: Remote Information Disclosure Vulnerability in Android-10 (A-112552517)

CVE-2019-9406 · MEDIUM Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

In libhevc there is a possible information disclosure due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112552517

Learn more about our Cis Benchmark Audit For Google Android.