• CVE-2018-9363

发布时间: 2020年6月16日

修改时间: 2020年6月16日

概要

In the hidp_process_report in bluetooth, there is an integer overflow. This could lead to an out of bounds write with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android kernel Android ID: A-65853588 References: Upstream kernel.

CVSS v3 指标

NVD openEuler
CVSS评分 8.4 0.0
Attack Vector Local
Attack Complexity Low
Privileges Required None
User Interaction None
Scope Unchanged
Confidentiality High
Integrity High
Availability High

安全公告

公告名 概要 发布时间
KylinSec-SA-2020-2106 In the hidp_process_report in bluetooth, there is an integer overflow. This could lead to an out of bounds write with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android kernel Android ID: A-65853588 References: Upstream kernel. 2024年10月15日

影响产品

产品 状态