Possible OOBE Write Vulnerability in Meditate's Port RPC Handlers
CVE-2018-9376

6.7MEDIUM

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
2 December 2024

What is CVE-2018-9376?

The vulnerability arises from an out of bounds write issue within the MediaTek drivers, specifically in the rpc_msg_handler and related components located in port_rpc.c. Due to an improper bounds check, this vulnerability allows attackers to exploit weaknesses in the system and escalate privileges without requiring user interaction. This issue poses a significant risk for systems utilizing the affected MediaTek drivers, potentially allowing unauthorized access and system execution privileges.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Android 6

Android 6.0.1

Android 7

References

CVSS V3.1

Score:
6.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.