Security Advisory

CVE-2020-0179

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2020-06-11 14:43:47
Last updated 2024-08-04 05:55:11
Assigner google_android
CVSS score not scored
State PUBLISHED

Description

In doSendObjectInfo of MtpServer.cpp, there is a possible path traversal attack due to insufficient input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is required for exploitation.Product: AndroidVersions: Android-10Android ID: A-130656917