In bta_hd_set_report_act of bta_hd_act.cc, there is a possible out-of-bounds read due to an integer overflow. This could lead to remote information disclosure in the Bluetooth service with no additional execution privileges needed. User interaction is not needed for exploitation.
                
            Metrics
Affected Vendors & Products
References
        History
                    Wed, 18 Dec 2024 19:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Apache Apache traffic Server Google android | |
| CPEs | cpe:2.3:a:apache:traffic_server:*:*:*:*:*:*:*:* cpe:2.3:o:google:android:8.0:*:*:*:*:*:*:* cpe:2.3:o:google:android:8.1:*:*:*:*:*:*:* cpe:2.3:o:google:android:9.0:*:*:*:*:*:*:* | |
| Vendors & Products | Apache Apache traffic Server Google android | 
Thu, 05 Dec 2024 22:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| References |  | 
Thu, 05 Dec 2024 22:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| References |  | 
Wed, 20 Nov 2024 19:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Weaknesses | CWE-125 CWE-190 | |
| Metrics | cvssV3_1 
 
 | 
Wed, 20 Nov 2024 17:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | In bta_hd_set_report_act of bta_hd_act.cc, there is a possible out-of-bounds read due to an integer overflow. This could lead to remote information disclosure in the Bluetooth service with no additional execution privileges needed. User interaction is not needed for exploitation. | |
| References |  | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: google_android
Published: 2024-11-20T17:40:25.846Z
Updated: 2024-12-05T21:50:01.040Z
Reserved: 2018-04-05T00:00:00.000Z
Link: CVE-2018-9481
 Vulnrichment
                        Vulnrichment
                    Updated: 2024-11-20T18:22:53.071Z
 NVD
                        NVD
                    Status : Analyzed
Published: 2024-11-20T18:15:19.940
Modified: 2024-12-18T18:49:52.937
Link: CVE-2018-9481
 Redhat
                        Redhat
                    No data.