PT-2024-10717 · Google · Android

Published

2024-11-20

·

Updated

2024-12-18

·

CVE-2018-9483

CVSS v3.1

6.5

Medium

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Android versions prior to 8.0
Description The issue is related to a possible out of bounds read due to a use after free in the bta dm remove sec dev entry function of bta dm act.cc. This could lead to remote information disclosure over Bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation.
Recommendations For Android versions prior to 8.0, update to version 8.0 or later to resolve the issue.

Fix

Out of bounds Read

Use After Free

Weakness Enumeration

Related Identifiers

CVE-2018-9483

Affected Products

Android