CVE-2018-9351: Medium severity android vulnerability
Published Nov 27, 2024
·Updated
In ih264efmtconv420pto420sp of ih264efmtconv.c there is a possible out of bound read due to missing bounds check. This could lead to remote denial of service with no additional execution privileges needed. User interaction is needed for exploitation.
Affected Software
5 affected components
Google Android=7.0
Google Android=7.1.1
Google Android=7.1.2
Google Android=8.0
Google Android=8.1
Remediation
Event History
Nov 27, 2024
CVE Published
via MITRE·10:05 PM
Data Sourced
via MITRE·10:05 PM
Description
Data Sourced
via NVD·11:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-9351?
CVE-2018-9351 is classified as a medium severity vulnerability due to its potential to cause denial of service.
2
How does CVE-2018-9351 affect users?
CVE-2018-9351 can cause remote denial of service which may disrupt the functionality of affected devices.
3
What versions of Android are affected by CVE-2018-9351?
CVE-2018-9351 affects Android versions 7.0, 7.1.1, 7.1.2, 8.0, and 8.1.
4
Is user interaction required for exploiting CVE-2018-9351?
Yes, user interaction is needed for the exploitation of CVE-2018-9351.
5
How can I fix CVE-2018-9351?
To fix CVE-2018-9351, update your Android device to the latest security patch provided by Google.