7.8
CVSSv3

CVE-2019-2178

Published: 05/09/2019 Updated: 06/09/2019
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

In rw_t4t_sm_read_ndef of rw_t4t in Android 7.1.1, 7.1.2, 8.0, 8.1 and 9, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege in the NFC service with no additional execution privileges needed. User interaction is not needed for exploitation.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

google android 7.1.2

google android 8.1

google android 9.0

google android 7.1.1

google android 8.0