PT-2024-10715 · Google · Android

Published

2024-11-20

·

Updated

2024-12-18

·

CVE-2018-9481

CVSS v3.1

6.5

Medium

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Android versions prior to 8.0
Description The issue is related to a possible out-of-bounds read due to an integer overflow in the bta hd set report act function of bta hd act.cc. This could lead to remote information disclosure in the Bluetooth service with no additional execution privileges needed. User interaction is not needed for exploitation.
Recommendations For Android versions prior to 8.0, update to version 8.0 or later to resolve the issue.

Fix

Out of bounds Read

Integer Overflow

Weakness Enumeration

Related Identifiers

CVE-2018-9481

Affected Products

Android