CVE-2018-9476

In avrc_pars_browsing_cmd of avrc_pars_tg.cc, there is a possible use-after-free due to improper locking. This could lead to remote escalation of privilege in the Bluetooth service with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android-8.0 Android-8.1 Android ID: A-109699112
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:o:google:android:8.1:*:*:*:*:*:*:*
cpe:2.3:o:google:android:8.0:*:*:*:*:*:*:*

Information

Published : 2018-10-02 12:29

Updated : 2018-12-28 11:07


NVD link : CVE-2018-9476

Mitre link : CVE-2018-9476


JSON object : View

CWE
CWE-416

Use After Free

Advertisement

dedicated server usa

Products Affected

google

  • android