CVE-2019-9266 is an out-of-bounds write vulnerability in the Android sensorservice, affecting Android 10. This flaw, stemming from a missing bounds check, allows for local escalation of privilege to System execution with high privileges already required, without user interaction. Rated Medium severity (CVSS 6.7), it poses a significant risk to confidentiality, integrity, and availability once an attacker has gained initial access. Currently, there is no known public exploit code, Metasploit modules, or Nuclei templates, and it shows no evidence of active exploitation or community discussion.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
10.0CPE matchmatch criteria | cpe:2.3:o:google:android:10.0:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.