CVE-2019-9289 is an out-of-bounds read vulnerability in Android's Bluetooth component, affecting Android 10. This flaw allows for local information disclosure without requiring user interaction or elevated privileges. Rated as MEDIUM severity (CVSS 5.5), its impact is limited to confidentiality, with no integrity or availability concerns. While no public exploits or Metasploit modules exist, and community discussion is minimal, organizations should still patch affected devices to mitigate potential data leaks.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
10.0CPE matchmatch criteria | cpe:2.3:o:google:android:10.0:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.