CVE-2019-20777: Google Android

Critical severity, CVSS 9.8. EPSS: 0.4% chance of exploitation in the next 30 days.

An issue was discovered on LG mobile devices with Android OS 7.0, 7.1, 7.2, 8.0, 8.1, and 9.0 software. WapService mishandles OTA Provisioning on V40 and G7 devices. The LG ID is LVE-SMP-190006 (July 2019).

Affected products

  • Google Android: version 7.0 only; version 7.1 only; version 7.2 only; version 8.0 only; version 8.1 only; version 9.0 only

Published 2020-04-17. Last modified 2026-06-17.