Lucene search

K
osvGoogleOSV:CVE-2020-0499
HistoryDec 15, 2020 - 4:15 p.m.

CVE-2020-0499

2020-12-1516:15:14
Google
osv.dev
5
heap buffer overflow
bitreader.c
android-11
remote information disclosure
flac

AI Score

6.5

Confidence

High

EPSS

0.008

Percentile

81.5%

In FLAC__bitreader_read_rice_signed_block of bitreader.c, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-156076070