CVE-2018-9562: High severity Google Android vulnerability
Published Dec 3, 2018
·Updated
In btaagdodisc of btaagsdp.cc, there is a possible out-of-bound read due to an incorrect parameter size. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: Android-9. Android ID: A-113164621.
Affected Software
2 affected components
Google Android=9.0
Google Android
Event History
Dec 3, 2018
CVE Published
via Android·12:00 AM
Data Sourced
via Android·12:00 AM
SeverityWeaknessAffected Software
Dec 6, 2018
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What access does an attacker need to exploit this issue?
The issue is remotely exploitable over the network and requires no privileges or user interaction. Successful exploitation could disclose information from an affected device.
2
Which Android version is identified as affected?
The provided data identifies Android 9 as affected.
3
How can I identify this issue in Android security tracking?
This vulnerability is tracked by Android ID A-113164621 and CVE-2018-9562.