PT-2018-1707 · Google · Android

Published

2018-06-28

·

Updated

2018-06-28

·

CVE-2018-9442

CVSS v2.0

6.2

Medium

VectorAV:L/AC:H/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: Android (affected versions not specified)
Description: The issue is related to the ION memory allocation subsystem in the Android operating system, which has inadequate access control between applications and the operating system. This can be exploited by a remote attacker using a specially crafted application to modify data on the device and gain root privileges.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2018-01267
CVE-2018-9442

Affected Products

Android