Medium severity5.5NVD Advisory· Published Dec 6, 2019· Updated Jun 17, 2026
CVE-2019-2220
CVE-2019-2220
Description
In checkOperation of AppOpsService.java, there is a possible bypass of user interaction requirements due to mishandling application suspend. This could lead to local information disclosure no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-9 Android-10Android ID: A-138636979
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4- Google/Androiddescription
Patches
Vulnerability mechanics
References
1- source.android.com/security/bulletin/2019-12-01nvdVendor Advisory
News mentions
0No linked articles in our index yet.