Possible Plaintext Leak in ConscryptEngine.java Due to Improper Crypto Use
CVE-2017-13309
Currently unrated 🤨
Summary
In readEncryptedData of ConscryptEngine.java, there is a possible plaintext leak due to improperly used crypto. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
Affected Version(s)
Android = 8.1
Timeline
Vulnerability published.
Vulnerability Reserved.
Collectors
NVD DatabaseMitre Database