CVE-2017-13309 — In readEncryptedData of ConscryptEngine.java, there is a possible plaintext leak due to improperly used crypto. This could lead to local information disclosure with no additional execution privileges — CVE Database · The Intelligence Room