CVE-2018-9468
https://notcve.org/view.php?id=CVE-2018-9468
This could lead to local information disclosure and file rewriting with no additional execution privileges needed. • https://github.com/IOActive/AOSP-DownloadProviderHijacker https://source.android.com/security/bulletin/2018-09-01 •
CVE-2018-9421
https://notcve.org/view.php?id=CVE-2018-9421
In writeInplace of Parcel.cpp, there is a possible information leak across processes, using Binder, due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. • https://source.android.com/security/bulletin/2018-07-01 • CWE-908: Use of Uninitialized Resource •
CVE-2018-9420
https://notcve.org/view.php?id=CVE-2018-9420
In BnCameraService::onTransact of CameraService.cpp, there is a possible information disclosure due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. • https://source.android.com/security/bulletin/2018-07-01 • CWE-908: Use of Uninitialized Resource •
CVE-2018-9419
https://notcve.org/view.php?id=CVE-2018-9419
This could lead to remote information disclosure with no additional execution privileges needed. • https://source.android.com/security/bulletin/2018-07-01 • CWE-787: Out-of-bounds Write •
CVE-2018-9410
https://notcve.org/view.php?id=CVE-2018-9410
This could lead to local information disclosure with no additional execution privileges needed. • https://source.android.com/security/bulletin/2018-07-01 • CWE-125: Out-of-bounds Read •