Google Android is prone to the following security vulnerabilities:
1. Privilege-escalation vulnerability
2. An information-disclosure vulnerability
An attacker can exploit these issues to obtain sensitive information or execute arbitrary code within the context of the privileged process.
These issues are being tracked by Android Bug IDs A-112859604, and A-112159033.
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: vuldb@securityfocus.com.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Bugtraq ID: | 105847 |
Class: | Unknown |
CVE: | CVE-2018-9523 CVE-2018-9526 |
Remote: | Yes |
Local: | No |
Published: | Nov 05 2018 12:00AM |
Updated: | Jun 04 2019 08:00AM |
Credit: | |
Vulnerable: | Google Android 7.1.1 Google Android 9.0 Google Android 8.1 Google Android 8.0 Google Android 7.1.2 Google Android 7.0 |
Not Vulnerable: |
References:
- Android Homepage (Google)
- Android Security Bulletinâ??June 2019 (Android)
- Android Security Bulletinâ??November 2018 (Android)
- Pixel?/?Nexus Security Bulletinâ??November 2018 (Android)
from SecurityFocus Vulnerabilities http://bit.ly/2KpDkIh
No comments:
Post a Comment
Note: Only a member of this blog may post a comment.