In bta_hd_set_report_act of bta_hd_act.cc, there is a possible out-of-bounds read due to an integer overflow. This could lead to remote information disclosure in the Bluetooth service with no additional execution privileges needed. User interaction is not needed for exploitation.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
History
18 Dec 2024, 18:49
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-190 | |
References | () https://lists.apache.org/thread.html/rcb8bae0b289d71d18a3220be256c1dfcc4d9ab49d2d6e07d1eac7c9d@%3Cdev.trafficserver.apache.org%3E - Mailing List | |
CPE | cpe:2.3:a:apache:traffic_server:*:*:*:*:*:*:*:* cpe:2.3:o:google:android:8.1:*:*:*:*:*:*:* cpe:2.3:o:google:android:8.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:9.0:*:*:*:*:*:*:* |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.5 |
First Time |
Apache traffic Server
Google android Apache |
05 Dec 2024, 22:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
20 Nov 2024, 18:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-11-20 18:15
Updated : 2024-12-18 18:49
NVD link : CVE-2018-9481
Mitre link : CVE-2018-9481
JSON object : View
Products Affected
- android
apache
- traffic_server
CWE
CWE-190
Integer Overflow or Wraparound