I
n oemCallback of ril.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.
References
| Link | Resource |
|---|---|
| https://source.android.com/security/bulletin/pixel/2018-06-01 | Vendor Advisory |
Configurations
History
19 Dec 2024, 16:39
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Google android
|
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.7 |
| CWE | CWE-190 | |
| References | () https://source.android.com/security/bulletin/pixel/2018-06-01 - Vendor Advisory | |
| CPE | cpe:2.3:o:google:android:-:*:*:*:*:*:*:* |
05 Dec 2024, 16:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-12-05 00:15
Updated : 2024-12-19 16:39
NVD link : CVE-2018-9404
Mitre link : CVE-2018-9404
CVE.ORG link : CVE-2018-9404
JSON object : View