#VU28271 Out-of-bounds read in Google Android - CVE-2020-0093
Published: May 27, 2020 / Updated: June 17, 2020
Google Android
Description
The vulnerability allows a local user to gain access to potentially sensitive information.
The vulnerability exists due to a missing bounds check in "exif_data_save_data_entry" of "exif-data.c" file within the Media framework functionality. A local user can trigger out-of-bounds read error and read contents of memory on the system.