Possible Out of Bounds Stack Write in Bluetooth Function Could Lead to Remote Escalation of Privilege
CVE-2018-9475
8.8HIGH
What is CVE-2018-9475?
The vulnerability in the Android Bluetooth stack, specifically in the HeadsetInterface::ClccResponse method of the btif_hf.cc file, presents a potential risk through a missing bounds check, creating an opportunity for an out of bounds stack write. This flaw could allow adversaries to escalate privileges remotely by exploiting the vulnerability during SIP calls, thus requiring no additional execution privileges or user interaction for successful exploitation.
Affected Version(s)
Android 7
Android 8
Android 8.1