CVE-2018-9430: Critical severity android vulnerability
Published Dec 2, 2024
·Updated
In prop2cfg of btifstorage.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation.
Affected Software
7 affected components
Google Android=6.0
Google Android=6.0.1
Google Android=7.0
Google Android=7.1.1
Google Android=7.1.2
Google Android=8.0
Google Android=8.1
Remediation
Event History
Dec 2, 2024
CVE Published
via MITRE·09:36 PM
Data Sourced
via MITRE·09:36 PM
Description
Data Sourced
via NVD·10:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-9430?
CVE-2018-9430 has a high severity due to its potential for remote code execution.
2
How do I fix CVE-2018-9430?
To address CVE-2018-9430, ensure that your device is updated to the latest security patches provided by Google.
3
Which versions of Android are affected by CVE-2018-9430?
CVE-2018-9430 affects Android versions 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, and 8.1.
4
Is user interaction required for exploiting CVE-2018-9430?
No, user interaction is not needed for the exploitation of CVE-2018-9430.
5
What type of vulnerability is CVE-2018-9430 classified as?
CVE-2018-9430 is classified as an out-of-bounds write vulnerability.