CVE-2021-0562
Last modified
CVE-2021-0562 is a medium-severity vulnerability rated 5.5/10 on the CVSS scale. In RasterIntraUpdate of motion_est.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. EPSS estimates a 0.11% chance of exploitation in the next 30 days.
Description
In RasterIntraUpdate of motion_est.cpp, there is a possible out of bounds read due to an incorrect bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-176084648
Metrics
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Android | 11.0 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2021-0562?
How severe is CVE-2021-0562?
How do I fix CVE-2021-0562?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2021
- CVE-2021-0555In RenderStruct of protostream_objectsource.cc, there is a p…7.5
- CVE-2021-0556In getBlockSum of fastcodemb.cpp, there is a possible out of…5.5
- CVE-2021-0557In setRange of ABuffer.cpp, there is a possible out of bound…8.8
- CVE-2021-0558In fillMainDataBuf of pvmp3_framedecoder.cpp, there is a pos…6.5
- CVE-2021-0559In Lag_max of p_ol_wgh.cpp, there is a possible out of bound…6.5
- CVE-2021-0561In append_to_verify_fifo_interleaved_ of stream_encoder.c, t…5.5
- CVE-2021-0563In ih264e_fmt_conv_422i_to_420sp of ih264e_fmt_conv.c, there…5.5
- CVE-2021-0564In decrypt of CryptoPlugin.cpp, there is a possible use-afte…6.4
- CVE-2021-0565In wrapUserThread of AudioStream.cpp, there is a possible us…7
- CVE-2021-0566In accessAudioHalPidscpp of TimeCheck.cpp, there is a possib…4.4
- CVE-2021-0567In isRestricted of RemoteViews.java, there is a possible way…7.8
- CVE-2021-0568In onReceive of DevicePolicyManagerService.java, there is a …7.8
Are you affected by CVE-2021-0562?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
