CVE-2018-9340

In ResStringPool::setTo of ResourceTypes.cpp, it's possible for an attacker to control the value of mStringPoolSize to be out of bounds, causing information disclosure.
Configurations

No configuration.

History

20 Nov 2024, 17:35

Type Values Removed Values Added
CWE CWE-787
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
Summary
  • (es) En ResStringPool::setTo de ResourceTypes.cpp, es posible que un atacante controle que el valor de mStringPoolSize esté fuera de los límites, lo que provoca la divulgación de información.

19 Nov 2024, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-19 19:15

Updated : 2024-11-20 17:35


NVD link : CVE-2018-9340

Mitre link : CVE-2018-9340

CVE.ORG link : CVE-2018-9340


JSON object : View

Products Affected

No product.

CWE
CWE-787

Out-of-bounds Write