UBUNTU-CVE-2019-2201
Dashboard / Vulnerabilities / UBUNTU-CVE-2019-2201
UBUNTU-CVE-2019-2201
Summary:
Details: In generate_jsimd_ycc_rgb_convert_neon of jsimd_arm64_neon.S, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution in an unprivileged process with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-120551338
References: https://ubuntu.com/security/CVE-2019-2201, https://source.android.com/security/bulletin/2019-11-01, https://ubuntu.com/security/notices/USN-4190-1, https://www.cve.org/CVERecord?id=CVE-2019-2201
Affected packages
Package
Name: libjpeg-turbo
Purl: pkg:deb/ubuntu/[email protected]?arch=source&distro=xenial
Affected ranges
Type: ECOSYSTEM
Events:
