ISOMAN

CVE

CVE-2018-9516

In hid_debug_events_read of drivers/hid/hid-debug.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android kernel Android ID: A-71361580.

Severity
HIGH
CVSS
7.8
Published
Modified

Linked Releases

References

  1. https://access.redhat.com/errata/RHSA-2019:2029
  2. https://access.redhat.com/errata/RHSA-2019:2043
  3. https://lists.debian.org/debian-lts-announce/2018/10/msg00003.html
  4. https://source.android.com/security/bulletin/pixel/2018-09-01
  5. https://usn.ubuntu.com/3871-1/
  6. https://usn.ubuntu.com/3871-3/
  7. https://usn.ubuntu.com/3871-4/
  8. https://usn.ubuntu.com/3871-5/
  9. https://www.debian.org/security/2018/dsa-4308
  10. https://access.redhat.com/errata/RHSA-2019:2029
  11. https://access.redhat.com/errata/RHSA-2019:2043
  12. https://lists.debian.org/debian-lts-announce/2018/10/msg00003.html
  13. https://source.android.com/security/bulletin/pixel/2018-09-01
  14. https://usn.ubuntu.com/3871-1/
  15. https://usn.ubuntu.com/3871-3/
  16. https://usn.ubuntu.com/3871-4/
  17. https://usn.ubuntu.com/3871-5/
  18. https://www.debian.org/security/2018/dsa-4308