CVE-2019-9349 is a resource exhaustion vulnerability in the libstagefright component of Android 10, stemming from improper input validation. This flaw allows a remote attacker to cause a denial of service without requiring elevated privileges, though user interaction is necessary for successful exploitation. Rated as Medium severity (CVSS 6.5), the attack is network-based and low complexity, with a high impact on availability. There is currently no evidence of active exploitation, public exploit code, or significant community discussion or media coverage surrounding this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
10.0CPE matchmatch criteria | cpe:2.3:o:google:android:10.0:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.