In /proc/driver/wmt_dbg driver, there are several possible out of bounds
writes. These could lead to local escalation of privilege with System
execution privileges needed. User interaction is not needed for
exploitation.
References
| Link | Resource |
|---|---|
| https://source.android.com/security/bulletin/pixel/2018-06-01 | Vendor Advisory |
Configurations
History
17 Jun 2026, 02:06
| Type | Values Removed | Values Added |
|---|---|---|
| Summary | (es) En el controlador /proc/driver/wmt_dbg, hay varias posibles escrituras fuera de límites. Estas podrían conducir a una escalada local de privilegios con privilegios de ejecución de Sistema necesarios. La interacción del usuario no es necesaria para la explotación. |
19 Dec 2024, 17:08
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.7 |
| References | () https://source.android.com/security/bulletin/pixel/2018-06-01 - Vendor Advisory | |
| CPE | cpe:2.3:o:google:android:-:*:*:*:*:*:*:* | |
| First Time |
Google
Google android |
05 Dec 2024, 17:15
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-787 | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
05 Dec 2024, 00:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-12-05 00:15
Updated : 2026-06-17 02:06
NVD link : CVE-2018-9399
Mitre link : CVE-2018-9399
CVE.ORG link : CVE-2018-9399
JSON object : View
Products Affected
- android
CWE
CWE-787
Out-of-bounds Write
