Логотип exploitDog
bind:CVE-2018-9476
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-9476

Количество 3

Количество 3

nvd логотип

CVE-2018-9476

больше 7 лет назад

In avrc_pars_browsing_cmd of avrc_pars_tg.cc, there is a possible use-after-free due to improper locking. This could lead to remote escalation of privilege in the Bluetooth service with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android-8.0 Android-8.1 Android ID: A-109699112

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-mfqf-v4g7-45g7

больше 3 лет назад

In avrc_pars_browsing_cmd of avrc_pars_tg.cc, there is a possible use-after-free due to improper locking. This could lead to remote escalation of privilege in the Bluetooth service with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android-8.0 Android-8.1 Android ID: A-109699112

CVSS3: 9.8
EPSS: Низкий
fstec логотип

BDU:2018-01180

больше 7 лет назад

Уязвимость функции avrc_pars_browsing_cmd компонента Bluetooth операционной системы Android, позволяющая нарушителю повысить свои привилегии

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-9476

In avrc_pars_browsing_cmd of avrc_pars_tg.cc, there is a possible use-after-free due to improper locking. This could lead to remote escalation of privilege in the Bluetooth service with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android-8.0 Android-8.1 Android ID: A-109699112

CVSS3: 9.8
6%
Низкий
больше 7 лет назад
github логотип
GHSA-mfqf-v4g7-45g7

In avrc_pars_browsing_cmd of avrc_pars_tg.cc, there is a possible use-after-free due to improper locking. This could lead to remote escalation of privilege in the Bluetooth service with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android-8.0 Android-8.1 Android ID: A-109699112

CVSS3: 9.8
6%
Низкий
больше 3 лет назад
fstec логотип
BDU:2018-01180

Уязвимость функции avrc_pars_browsing_cmd компонента Bluetooth операционной системы Android, позволяющая нарушителю повысить свои привилегии

CVSS3: 7.5
6%
Низкий
больше 7 лет назад

Уязвимостей на страницу