Potential Out-of-Bounds Write in cmd_flash_mmc_sparse_img Could Lead to Local Escalation of Privilege
CVE-2018-9372
Currently unrated 🤨
Summary
In cmd_flash_mmc_sparse_img of dl_commands.c, there is a possible out of bounds write due to a missing bounds check. This could lead to a local escalation of privilege in the bootloader with no additional execution privileges needed. User interaction is not needed for exploitation.
Affected Version(s)
Android = SoCVersion
Refferences
Timeline
Vulnerability published
Vulnerability Reserved
Collectors
NVD DatabaseMitre Database