CVE-2024-0051 Information

Description

In onQueueFilled of SoftMPEG4.cpp there is a possible out of bounds write due to a heap buffer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.

Reference

https://android.googlesource.com/platform/frameworks/av/+/a52c14a5b49f26efafa581dea653b4179d66909e https://source.android.com/security/bulletin/2024-03-01

Share on: