Beveiligingsadvies

CVE-2018-9394

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-12-04 17:19:10
Laatst bijgewerkt 2024-12-05 17:15:12
Toegewezen door google_android
CVSS-score 7.8
Status PUBLISHED

Beschrijving

In mtk_p2p_wext_set_key of drivers/misc/mediatek/connectivity/wlan/gen2/os/linux/gl_p2p.c, there is a possible OOB write due to improper input validation. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation.