← Back to CVE List

CVE-2019-2197

Published: 2019-11-13T18:15Z
Last Modified: 2024-11-21T04:40Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
In processPhonebookAccess of CachedBluetoothDevice.java, there is a possible permission bypass due to an insecure default value. This could lead to local information disclosure of the user's contact list with no additional execution privileges needed. User interaction is needed for exploitation.Product: AndroidVersions: Android-8.0 Android-8.1 Android-9 Android-10Android ID: A-138529441 > MITRE Terms of Use apply – see LICENSE‑MITRE.txt