VulnerabilityModified
CVE-2019-9278
In libexif, there is a possible out of bounds write due to an integer overflow.
HIGH 8.8EPSS 4.06%
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (4.06%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
In libexif, there is a possible out of bounds write due to an integer overflow. This could lead to remote escalation of privilege in the media content provider with no additional execution privileges needed. User interaction is needed for exploitation. Product: AndroidVersions: Android-10Android ID: A-112537774
- CVSS 3.1
- 8.8 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
- EPSS
- 4.06% probability · 90th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-190, CWE-787
- Affected
- google/android · opensuse/leap · fedoraproject/fedora · debian/debian linux · canonical/ubuntu linux
- Source
- security@android.com
References
- http://lists.opensuse.org/opensuse-security-announce/2020-03/msg00000.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2020-06/msg00017.htmlMailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2019/10/25/17Mailing List
- http://www.openwall.com/lists/oss-security/2019/10/27/1Mailing List
- http://www.openwall.com/lists/oss-security/2019/11/07/1Mailing List
- https://github.com/libexif/libexif/commit/75aa73267fdb1e0ebfbc00369e7312bac43d0566Patch, Third Party Advisory
- https://github.com/libexif/libexif/issues/26Issue Tracking, Patch, Third Party Advisory
- https://lists.debian.org/debian-lts-announce/2020/02/msg00007.htmlMailing List, Third Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MO2VTHD7OLPJDCJBHKUQTBAHZOBBCF6X/
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VA5BPQLOFXIZOOJHBYDU635Z5KLUMTDD/
- https://seclists.org/bugtraq/2020/Feb/9Mailing List, Third Party Advisory
- https://security.gentoo.org/glsa/202007-05Third Party Advisory
- https://source.android.com/security/bulletin/android-10Vendor Advisory
- https://usn.ubuntu.com/4277-1/Third Party Advisory
- https://www.debian.org/security/2020/dsa-4618Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2020-03/msg00000.htmlMailing List, Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2020-06/msg00017.htmlMailing List, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2019/10/25/17Mailing List
- http://www.openwall.com/lists/oss-security/2019/10/27/1Mailing List
- http://www.openwall.com/lists/oss-security/2019/11/07/1Mailing List
- https://github.com/libexif/libexif/commit/75aa73267fdb1e0ebfbc00369e7312bac43d0566Patch, Third Party Advisory
- https://github.com/libexif/libexif/issues/26Issue Tracking, Patch, Third Party Advisory
- https://lists.debian.org/debian-lts-announce/2020/02/msg00007.htmlMailing List, Third Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/MO2VTHD7OLPJDCJBHKUQTBAHZOBBCF6X/
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/VA5BPQLOFXIZOOJHBYDU635Z5KLUMTDD/
- https://seclists.org/bugtraq/2020/Feb/9Mailing List, Third Party Advisory
- https://security.gentoo.org/glsa/202007-05Third Party Advisory
- https://source.android.com/security/bulletin/android-10Vendor Advisory
- https://usn.ubuntu.com/4277-1/Third Party Advisory
- https://www.debian.org/security/2020/dsa-4618Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.