interface.c, there is a possible stack buffer overflow due to a missing
bounds check. This could lead to local escalation of privilege in a
privileged process with System execution privileges needed. User interaction
is not needed for exploitation.
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 19 Dec 2024 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-787 | |
| CPEs | cpe:2.3:o:google:android:-:*:*:*:*:*:*:* |
Thu, 05 Dec 2024 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Google
Google android Google pixel |
|
| Weaknesses | CWE-120 | |
| CPEs | cpe:2.3:h:google:pixel:*:*:*:*:*:*:*:* cpe:2.3:o:google:android:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Google
Google android Google pixel |
|
| Metrics |
cvssV3_1
|
Wed, 04 Dec 2024 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In the MTK_FLP_MSG_HAL_DIAG_REPORT_DATA_NTF handler of flp2hal_- interface.c, there is a possible stack buffer overflow due to a missing bounds check. This could lead to local escalation of privilege in a privileged process with System execution privileges needed. User interaction is not needed for exploitation. | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: google_android
Published:
Updated: 2024-12-05T16:19:12.212Z
Reserved: 2018-04-05T00:00:00.000Z
Link: CVE-2018-9403
Updated: 2024-12-05T16:19:05.912Z
Status : Analyzed
Published: 2024-12-05T00:15:17.763
Modified: 2024-12-19T16:42:42.670
Link: CVE-2018-9403
No data.
OpenCVE Enrichment
No data.