ZeroHour

CVE-2018-9363

CVSS 3.1
8.4 high
EPSS
<1%p38
Published
()
Modified
Description

In the hidp_process_report in bluetooth, there is an integer overflow. This could lead to an out of bounds write with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android kernel Android ID: A-65853588 References: Upstream kernel.

Vendors
googlecanonicaldebianlinux
Products
android, ubuntu linux, debian linux, linux kernel
Weakness
CWE-190, CWE-787
Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.