NA - CVE-2018-9472 - In xmlMemStrdupLoc of xmlmemory.c, there is a...
In xmlMemStrdupLoc of xmlmemory.c, there is a possible out-of-bounds write due to an integer overflow. This could lead to remote code execution in an unprivileged process with no additional...
NA - CVE-2018-9474 - In writeToParcel of MediaPlayer.java, there is...
In writeToParcel of MediaPlayer.java, there is a possible serialization/deserialization mismatch due to improper input validation. This could lead to local escalation of privilege with no...
NA - CVE-2018-9475 - In HeadsetInterface::ClccResponse of...
In HeadsetInterface::ClccResponse of btif_hf.cc, there is a possible out of bounds stack write due to a missing bounds check. This could lead to remote escalation of privilege via Bluetooth, if the...
NA - CVE-2018-9477 - In the development options section of the...
In the development options section of the Settings app, there is a possible authentication bypass due to a missing permission check. This could lead to local escalation of privilege with no...
NA - CVE-2018-9478 - In process_service_attr_req and...
In process_service_attr_req and process_service_search_attr_req of sdp_server.cc, there is an out of bounds write due to a missing bounds check. This could lead to remote code execution with no...
NA - CVE-2018-9479 - In process_service_attr_req and...
In process_service_attr_req and process_service_search_attr_req of sdp_server.cc, there is an out of bounds write due to a missing bounds check. This could lead to remote code execution with no...
NA - CVE-2018-9480 - In bta_hd_get_report_act of bta_hd_act.cc,...
In bta_hd_get_report_act of bta_hd_act.cc, there is a possible out-of-bounds read due to improper input validation. This could lead to remote information disclosure in the Bluetooth service with no...
NA - CVE-2018-9481 - In bta_hd_set_report_act of bta_hd_act.cc,...
In bta_hd_set_report_act of bta_hd_act.cc, there is a possible out-of-bounds read due to an integer overflow. This could lead to remote information disclosure in the Bluetooth service with no...
NA - CVE-2018-9482 - In intr_data_copy_cb of btif_hd.cc, there is a...
In intr_data_copy_cb of btif_hd.cc, there is a possible out of bounds read due to an integer overflow. This could lead to local information disclosure in the Bluetooth service with no additional...
NA - CVE-2018-9483 - In bta_dm_remove_sec_dev_entry of...
In bta_dm_remove_sec_dev_entry of bta_dm_act.cc, there is a possible out of bounds read due to a use after free. This could lead to remote information disclosure over bluetooth with no additional...