Security Advisory

CVE-2019-9472

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2020-01-06 17:25:37
Last updated 2024-08-04 21:54:43
Assigner google_android
CVSS score not scored
State PUBLISHED

Description

In DCRYPTO_equals of compare.c, there is a possible timing attack due to improperly used crypto. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android kernel Android ID: A-130237611