cbcvebase.
CVE-2018-9516
published 2018-11-06

CVE-2018-9516: In hid_debug_events_read of drivers/hid/hid-debug.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation…

high7.8CVSS 3.0
AVLACLPRLUINSUCHIHAH
In hid_debug_events_read of drivers/hid/hid-debug.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android kernel Android ID: A-71361580.

Affected

13 ranges
VendorProductVersion rangeFixed in
canonicalubuntu_linux
canonicalubuntu_linux
canonicalubuntu_linux
debiandebian_linux
debiandebian_linux
debianlinux< linux 4.17.6-1 (bookworm)linux 4.17.6-1 (bookworm)
google_incandroid
linuxlinux_kernel>= 0 < 4.17.6-14.17.6-1
linuxlinux_kernel>= 0 < 4.17.6-14.17.6-1
linuxlinux_kernel>= 0 < 4.17.6-14.17.6-1
linuxlinux_kernel>= 0 < 4.17.6-14.17.6-1
linuxlinux_kernel>= 0 < 4.15.0-44.474.15.0-44.47
linuxlinux_kernel>= 0 < 4.15.0-45.484.15.0-45.48

CVSS provenance

nvdv3.07.8HIGHCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
osv7.8HIGH