VYPR
Medium severity5.5NVD Advisory· Published Sep 5, 2019· Updated Jun 17, 2026

CVE-2019-2124

CVE-2019-2124

Description

In ComposeActivityEmailExternal of ComposeActivityEmailExternal.java in Android 7.1.1, 7.1.2, 8.0, 8.1 and 9, there is a possible way to silently attach files to an email due to a confused deputy. This could lead to local information disclosure.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

7
  • Google/Android5 versions
    cpe:2.3:o:google:android:7.1.1:*:*:*:*:*:*:*+ 4 more
    • cpe:2.3:o:google:android:7.1.1:*:*:*:*:*:*:*
    • cpe:2.3:o:google:android:7.1.2:*:*:*:*:*:*:*
    • cpe:2.3:o:google:android:8.0:*:*:*:*:*:*:*
    • cpe:2.3:o:google:android:8.1:*:*:*:*:*:*:*
    • cpe:2.3:o:google:android:9.0:*:*:*:*:*:*:*
  • Android/Android kerneldescription
  • Range: 7.1.1, 7.1.2, 8.0, 8.1, 9

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.