Information disclosure in Google Android - CVE-2020-0258
Published: August 11, 2020 / Updated: August 21, 2020
Google Android
Description
The vulnerability allows a local authenticated user to gain access to sensitive information.
In stopZygoteLocked of AppZygote.java, there is an insufficient cleanup. This could lead to local information disclosure in the application that is started next with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-10Android ID: A-157598956