PT-2018-18995 · Google · Android
Published
2018-11-06
·
Updated
2018-12-14
·
CVE-2018-9356
CVSS v2.0
10
Critical
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Android versions 6.0 through 8.1
Description
A double free issue in the bnep data ind function of bnep main.c could lead to remote code execution. This issue does not require additional execution privileges or user interaction to be exploited.
Recommendations
For Android versions 6.0 through 8.1, update to a version that contains a fix for this issue.
Fix
Double Free
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Android