CVE-2019-2208
13.11.2019, 18:15
In PromiseBuiltinsAssembler::NewPromiseCapability of builtins-promise.cc, there is a possible out of bounds read in v8 JIT code due to a bug in code generation. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android-8.1, Android-9 Android ID: A-138441919Enginsight
Vendor | Product | Version |
---|---|---|
android | 9.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration