In loop of DnsTlsSocket.cpp, there... CVE-2019-2111

7.5 AV AC AU C I A
发布: 2019-07-08
修订: 2019-11-22

In loop of DnsTlsSocket.cpp, there is a possible heap memory corruption due to a use after free. This could lead to remote code execution in the netd server with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android-9. Android ID: A-122856181.