In bta_hd_set_report_act of bta_hd_act.cc, there is a possible out-of-bounds read due to an integer overflow. This could lead to remote information disclosure in the Bluetooth service with no additional execution privileges needed. User interaction is not needed for exploitation.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
History
18 Dec 2024, 18:49
Type | Values Removed | Values Added |
---|---|---|
References | () https://lists.apache.org/thread.html/rcb8bae0b289d71d18a3220be256c1dfcc4d9ab49d2d6e07d1eac7c9d@%3Cdev.trafficserver.apache.org%3E - Mailing List | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.5 |
First Time |
Apache
Google android Apache traffic Server |
|
CPE | cpe:2.3:o:google:android:8.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:9.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:8.1:*:*:*:*:*:*:* cpe:2.3:a:apache:traffic_server:*:*:*:*:*:*:*:* |
05 Dec 2024, 22:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
Information
Published : 2024-11-20 18:15
Updated : 2024-12-18 18:49
NVD link : CVE-2018-9481
Mitre link : CVE-2018-9481
CVE.ORG link : CVE-2018-9481
JSON object : View
Products Affected
- android
apache
- traffic_server