Stack Buffer Overflow Vulnerability in flp2hal Could Lead to Local Escalation of Privilege
CVE-2018-9403

6.7MEDIUM

Key Information:

Vendor

Google

Status
Vendor
CVE Published:
5 December 2024

What is CVE-2018-9403?

A vulnerability exists in the MTK_flp_msg_hal_diag_report_data_ntf handler found in the flp2hal_interface.c file. This flaw allows for a potential stack buffer overflow due to an inadequate bounds check. Exploiting this vulnerability can enable local escalation of privileges in processes that require System execution rights. The process does not require any user interaction, making it particularly concerning for system integrity.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Android Kernel

References

CVSS V3.1

Score:
6.7
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

.