CVE-2018-9397

EUVD-2018-20991
In WMT_unlocked_ioctl of MTK WMT device driver, there is a possible OOB
    write due to a missing bounds check. This could lead to local escalation of
    privilege with System execution privileges needed. User interaction is not
    needed for exploitation.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.7 MEDIUM
LOCAL
LOW
HIGH
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: Unknown
Affected Products (NVD)
VendorProductVersion
googleandroid
-
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
VendorProductVersionSource
googleandroid
𝑥
< 2018-06-05
ADP
googlepixel
𝑥
< 2018-06-05
ADP