← back
CVE-2018-9480

CVE-2018-9480

CVSS 6.5 MEDIUMEPSS 0.1%CWE-125
In bta_hd_get_report_act of bta_hd_act.cc, there is a possible out-of-bounds read due to improper input validation. This could lead to remote information disclosure in the Bluetooth service with no additional execution privileges needed. User interaction is not needed for exploitation.
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Affected products
Google · Android

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →