CVE-2018-9483

In bta_dm_remove_sec_dev_entry of bta_dm_act.cc, there is a possible out of bounds read due to a use after free. This could lead to remote information disclosure over bluetooth with no additional execution privileges needed. User interaction is not needed for exploitation.
Configurations

No configuration.

History

21 Nov 2024, 13:57

Type Values Removed Values Added
Summary
  • (es) En bta_dm_remove_sec_dev_entry de bta_dm_act.cc, existe una posible lectura fuera de los límites debido a un use after free. Esto podría provocar la divulgación remota de información a través de Bluetooth sin necesidad de privilegios de ejecución adicionales. No se necesita la interacción del usuario para la explotación.

20 Nov 2024, 19:35

Type Values Removed Values Added
CWE CWE-416
CWE-125
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5

20 Nov 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-20 18:15

Updated : 2024-11-21 13:57


NVD link : CVE-2018-9483

Mitre link : CVE-2018-9483

CVE.ORG link : CVE-2018-9483


JSON object : View

Products Affected

No product.

CWE
CWE-125

Out-of-bounds Read

CWE-416

Use After Free