Possible Out of Bound Write Leads to Remote Arbitrary Code Execution
CVE-2018-9341

7.8HIGH

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
19 November 2024

What is CVE-2018-9341?

A vulnerability exists in the Android operating system that stems from an out of bound write issue in the impeg2d_mc_fullx_fully function within the impeg2d_mc.c file. This flaw can allow an attacker to execute arbitrary code remotely, without needing additional privileges to do so. Successful exploitation of this vulnerability requires user interaction, making it crucial for users to remain vigilant against suspicious activities or content that may be crafted to exploit this weakness. Timely updates and security patches are essential for mitigating potential threats stemming from this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Android 6

Android 6.0.1

Android 7

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.