
CVE-2018-9420
https://notcve.org/view.php?id=CVE-2018-9420
19 Nov 2024 — In BnCameraService::onTransact of CameraService.cpp, there is a possible information disclosure due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. • https://source.android.com/security/bulletin/2018-07-01 • CWE-908: Use of Uninitialized Resource •

CVE-2018-9419
https://notcve.org/view.php?id=CVE-2018-9419
19 Nov 2024 — In l2cble_process_sig_cmd of l2c_ble.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. • https://source.android.com/security/bulletin/2018-07-01 • CWE-787: Out-of-bounds Write •

CVE-2018-9412
https://notcve.org/view.php?id=CVE-2018-9412
19 Nov 2024 — In removeUnsynchronization of ID3.cpp there is a possible resource exhaustion due to improper input validation. This could lead to denial of service with no additional execution privileges needed. User interaction is needed for exploitation. • https://source.android.com/security/bulletin/2018-07-01 • CWE-400: Uncontrolled Resource Consumption •

CVE-2018-9411
https://notcve.org/view.php?id=CVE-2018-9411
19 Nov 2024 — In decrypt of ClearKeyCasPlugin.cpp there is a possible out-of-bounds write due to a missing bounds check. This could lead to remote arbitrary code execution with no additional execution privileges needed. User interaction is needed for exploitation. • https://github.com/tamirzb/CVE-2018-9411 • CWE-787: Out-of-bounds Write •

CVE-2018-9410
https://notcve.org/view.php?id=CVE-2018-9410
19 Nov 2024 — In analyzeAxes of FontUtils.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. • https://source.android.com/security/bulletin/2018-07-01 • CWE-125: Out-of-bounds Read •

CVE-2018-9348
https://notcve.org/view.php?id=CVE-2018-9348
19 Nov 2024 — In SMF_ParseMetaEvent of eas_smf.c, there is a possible integer overflow. This could lead to remote denial of service due to resource exhaustion with no additional execution privileges needed. User interaction is needed for exploitation. • https://source.android.com/security/bulletin/2018-06-01 • CWE-190: Integer Overflow or Wraparound •

CVE-2018-9346
https://notcve.org/view.php?id=CVE-2018-9346
19 Nov 2024 — In BnAudioPolicyService::onTransact of AudioPolicyService.cpp, there is a possible information disclosure due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. • https://source.android.com/security/bulletin/2018-06-01 • CWE-908: Use of Uninitialized Resource •

CVE-2018-9345
https://notcve.org/view.php?id=CVE-2018-9345
19 Nov 2024 — In BnAudioPolicyService::onTransact of AudioPolicyService.cpp, there is a possible information disclosure due to uninitialized data. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. • https://source.android.com/security/bulletin/2018-06-01 • CWE-908: Use of Uninitialized Resource •

CVE-2018-9341
https://notcve.org/view.php?id=CVE-2018-9341
19 Nov 2024 — In impeg2d_mc_fullx_fully of impeg2d_mc.c there is a possible out of bound write due to missing bounds check. This could lead to remote arbitrary code execution with no additional execution privileges needed. User interaction is needed for exploitation. • https://source.android.com/security/bulletin/2018-06-01 • CWE-787: Out-of-bounds Write •

CVE-2018-9340
https://notcve.org/view.php?id=CVE-2018-9340
19 Nov 2024 — In ResStringPool::setTo of ResourceTypes.cpp, it's possible for an attacker to control the value of mStringPoolSize to be out of bounds, causing information disclosure. • https://source.android.com/security/bulletin/2018-06-01 • CWE-787: Out-of-bounds Write •