CVE-2018-9470: High severity Google Android vulnerability
In bffScanneraddOutPos of Scanner.c, there is a possible out-of-bounds write due to an incorrect bounds check. This could lead to remote escalation of privilege in an unprivileged app with no additional execution privileges needed. User interaction is needed for exploitation.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2018-9470?
The severity of CVE-2018-9470 is classified as moderate due to potential remote escalation of privilege.
How do I fix CVE-2018-9470?
To fix CVE-2018-9470, users should update their Android devices to the latest security patch provided by Google.
What versions of Android are affected by CVE-2018-9470?
CVE-2018-9470 affects Android versions 7.0, 7.1.1, 7.1.2, 8.0, 8.1, and 9.0.
What type of vulnerability is CVE-2018-9470?
CVE-2018-9470 is an out-of-bounds write vulnerability that can be exploited through user interaction.
Is user interaction required to exploit CVE-2018-9470?
Yes, user interaction is required for the successful exploitation of CVE-2018-9470.