CVE-2019-9244 describes an out-of-bounds read vulnerability in the Near Field Communication (NFC) component of Android 10. This flaw, caused by a missing bounds check, could lead to local information disclosure without requiring elevated privileges. A successful exploit necessitates user interaction. The vulnerability is rated Medium severity (CVSS 5.0), indicating a low attack complexity and local attack vector, with a high impact on confidentiality. However, it has no impact on integrity or availability. Currently, there is no evidence of active exploitation, nor is public exploit code available in Metasploit, Nuclei, or ExploitDB. The CVE has received minimal community discussion and media coverage, suggesting low public awareness and interest.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
10.0CPE matchmatch criteria | cpe:2.3:o:google:android:10.0:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.