Google Security Advisories · November 2018 — Google Security Advisories
65 advisories 64 CVEs 4 EXPLOITED

GCVE / Google Cloud / Chrome / Android / Project Zero / OSS for 2018-11. Mirrored into Vulnetix VDB.

Every advisory below is enriched with the Vulnetix VDB exploit-intelligence chip (hover a CVE ID in the interactive page to see CVSS, EPSS, KEV status, and PoC maturity). 4 are already weaponised in the wild.

What would you fix first?

The advisories below are ordered by the Vulnetix risk prioritization strategy: exploitation evidence first, scores second. On the interactive page you can switch to three other lenses.

Advisories

openSUSE-SU-2018:3835-1

Open SourceExploitedCISA KEV listedCRITICAL2018-11-20

Security update for chromium

Affected products

ProductStatusVendorPackageEcosystem
chromium affected SUSE:Package Hub 12 SP2 chromium
Upstream advisory

DSA-4330-1

Open SourceExploitedCISA KEV listed2018-11-02

chromium-browser - security update

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Debian:9 chromium-browser
Upstream advisory

CVE-2018-8589

Project ZeroExploitedCISA KEV listed2018-11-14

An elevation of privilege vulnerability exists when Windows improperly handles calls to Win32k.sys, aka "Windows Win32k Elevation of Privilege Vulnerability." This affects Windows Server 2008, Windows 7, Windows Server 2008 R2.

CVEs:CVE-2018-8589

Upstream advisory

CVE-2018-8589

GoogleExploitedCISA KEV listedCRITICAL2018-11-14

An elevation of privilege vulnerability exists when Windows improperly handles calls to Win32k.sys, aka "Windows Win32k Elevation of Privilege Vulnerability." This affects Windows Server 2008, Windows 7, Windows Server 2008 R2.

CVEs:CVE-2018-8589

Affected products

ProductStatusVendorPackageEcosystem
windows_7 affected microsoft
windows_server_2008 affected microsoft
Upstream advisory

CVE-2018-15835

Open SourceWeaponized exploitHIGH2018-11-30

Android 1.0 through 9.0 has Insecure Permissions. The Android bug ID is 77286983.

CVEs:CVE-2018-15835

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9489

Open SourceWeaponized exploitHIGH2018-11-06

When wifi is switched, function sendNetworkStateChangeBroadcast of WifiStateMachine.java broadcasts an intent including detailed wifi network information. This could lead to information disclosure with no execution privileges needed. User interaction i...

CVEs:CVE-2018-9489

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9539

Open SourcePoC exploitHIGH2018-11-06

In the ClearKey CAS descrambler, there is a possible use after free due to a race condition. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Andr...

CVEs:CVE-2018-9539

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9521

Open SourceCoalition ESS < 30%HIGH2018-11-06

In parseMPEGCCData of NuPlayer2CCDecoder.cpp, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote code execution in an unprivileged process with no additional execution privileges needed. User interaction...

CVEs:CVE-2018-9521

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9537

Open SourceCoalition ESS < 30%HIGH2018-11-06

In CAacDecoder_DecodeFrame of aacdecode.cpp, there is a possible out-of-bounds write due to a missing bounds check. This could lead to remote code execution in the media server with no additional execution privileges needed. User interaction is needed ...

CVEs:CVE-2018-9537

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9536

Open SourceCoalition ESS < 30%HIGH2018-11-06

In numerous functions of libFDK, there are possible out of bounds writes due to incorrect bounds checks. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. Product: Andr...

CVEs:CVE-2018-9536

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9527

Open SourceCoalition ESS < 30%HIGH2018-11-06

In vorbis_book_decodev_set of codebook.c there is a possible out of bounds write due to missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. Product:...

CVEs:CVE-2018-9527

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9531

Open SourceCoalition ESS < 30%HIGH2018-11-06

In AudioSpecificConfig_Parse of tpdec_asc.cpp, there is a possible out-of-bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. ...

CVEs:CVE-2018-9531

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9540

Open SourceCoalition ESS < 30%HIGH2018-11-06

In avrc_ctrl_pars_vendor_rsp of avrc_pars_ct.c, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure over Bluetooth with no additional execution privileges needed. User interaction is no...

CVEs:CVE-2018-9540

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9541

Open SourceCoalition ESS < 30%HIGH2018-11-06

In avrc_pars_vendor_rsp of avcr_pars_ct.cc, there is a possible out-of-bounds read due to a missing bounds check. This could lead to remote information disclosure in the Bluetooth service with no additional execution privileges needed. User interaction...

CVEs:CVE-2018-9541

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9542

Open SourceCoalition ESS < 30%HIGH2018-11-06

In avrc_pars_vendor_rsp of avrc_pars_ct.cc, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User interaction is not needed for exploi...

CVEs:CVE-2018-9542

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9526

Open SourceCoalition ESS < 30%HIGH2018-11-06

In device configuration data, there is an improperly configured setting. This could lead to remote disclosure of device location. User interaction is not needed for exploitation. Product: Android. Versions: Android-9. Android ID: A-112159033

CVEs:CVE-2018-9526

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9528

Open SourceCoalition ESS < 30%HIGH2018-11-14

In ixheaacd_over_lap_add1_armv8 of ixheaacd_overlap_add1.s there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for ex...

CVEs:CVE-2018-9528

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9529

Open SourceCoalition ESS < 30%HIGH2018-11-14

In ixheaacd_individual_ch_stream of ixheaacd_channel.c there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploi...

CVEs:CVE-2018-9529

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9530

Open SourceCoalition ESS < 30%HIGH2018-11-14

In ixheaacd_tns_ar_filter_dec of ixheaacd_aac_tns.c there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitat...

CVEs:CVE-2018-9530

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9532

Open SourceCoalition ESS < 30%HIGH2018-11-14

In ixheaacd_extract_frame_info_ld of ixheaacd_env_extr.c there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for expl...

CVEs:CVE-2018-9532

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9533

Open SourceCoalition ESS < 30%HIGH2018-11-14

In ixheaacd_dec_data_init of ixheaacd_create.c there is a possible out of write read due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. Pr...

CVEs:CVE-2018-9533

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9534

Open SourceCoalition ESS < 30%HIGH2018-11-14

In ixheaacd_mps_getstridemap of ixheaacd_mps_parse.c there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploita...

CVEs:CVE-2018-9534

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9535

Open SourceCoalition ESS < 30%HIGH2018-11-14

In ixheaacd_reset_acelp_data_fix of ixheaacd_lpc.c there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitati...

CVEs:CVE-2018-9535

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9580

Open SourceCoalition ESS < 30%CRITICAL2018-11-06

A Elevation of privilege vulnerability in the HTC bootloader. Product: Android. Versions: Android kernel. Android ID: A-76222002.

CVEs:CVE-2018-9580

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9543

Open SourceCoalition ESS < 30%MEDIUM2018-11-06

In trim_device of f2fs_format_utils.c, it is possible that the data partition is not wiped during a factory reset. This could lead to local information disclosure after factory reset with no additional execution privileges needed. User interaction is n...

CVEs:CVE-2018-9543

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-5856

Open SourceCoalition ESS < 30%CRITICAL2018-11-27

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, due to a race condition, a Use After Free condition can occur in Audio.

CVEs:CVE-2018-5856

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-5906

Open SourceCoalition ESS < 30%CRITICAL2018-11-27

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, there is a possible buffer overflow in debugfs module due to lack of check in size of input before copying into buffer.

CVEs:CVE-2018-5906

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9523

Open SourceCoalition ESS < 30%HIGH2018-11-06

In Parcel.writeMapInternal of Parcel.java, there is a possible parcel serialization/deserialization mismatch due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed. User interac...

CVEs:CVE-2018-9523

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9524

Open SourceCoalition ESS < 30%HIGH2018-11-06

In functionality implemented in System UI, there are insufficient protections implemented around overlay windows. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is needed for exploitati...

CVEs:CVE-2018-9524

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9525

Open SourceCoalition ESS < 30%HIGH2018-11-06

In the AndroidManifest.xml file defining the SliceBroadcastReceiver handler for com.android.settings.slice.action.WIFI_CHANGED, there is a possible permissions bypass due to a confused deputy. This could lead to local escalation of privilege, allowing ...

CVEs:CVE-2018-9525

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9522

Open SourceCoalition ESS < 30%HIGH2018-11-06

In the serialization functions of StatsLogEventWrapper.java, there is a possible out-of-bounds write due to unnecessary functionality which may be abused. This could lead to local escalation of privilege in the system process with no additional executi...

CVEs:CVE-2018-9522

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-5919

Open SourceCoalition ESS < 30%CRITICAL2018-11-27

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, a use after free issue in WLAN host driver can lead to device reboot.

CVEs:CVE-2018-5919

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-5861

Open SourceCoalition ESS < 30%HIGH2018-11-27

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, existing checks in place on partition size are incomplete and can lead to heap overwrite vulnerabilities while loading a secure application from ...

CVEs:CVE-2018-5861

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9545

Open SourceCoalition ESS < 30%HIGH2018-11-06

In BTA_HdRegisterApp of bta_hd_api.cc, there is a possible out-of-bound write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitatio...

CVEs:CVE-2018-9545

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-9544

Open SourceCoalition ESS < 30%MEDIUM2018-11-06

In register_app of btif_hd.cc, there is a possible out-of-bounds read due to a missing bounds check. This could lead to local information disclosure in the Bluetooth service with no additional execution privileges needed. User interaction is not needed...

CVEs:CVE-2018-9544

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

DSA-4340-1

Open SourceEPSS <= 49%2018-11-18

chromium-browser - security update

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Debian:9 chromium-browser
Upstream advisory

CVE-2018-17478

GoogleEPSS <= 49%HIGH2018-11-12

Incorrect array position calculations in V8 in Google Chrome prior to 70.0.3538.102 allowed a remote attacker to potentially exploit object corruption via a crafted HTML page.

CVEs:CVE-2018-17478

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

DSA-4342-1

Open SourceEPSS <= 49%2018-11-21

chromium-browser - security update

Affected products

ProductStatusVendorPackageEcosystem
chromium-browser affected Debian:9 chromium-browser
Upstream advisory

CVE-2018-17479

GoogleEPSS <= 49%HIGH2018-11-20

Incorrect object lifetime calculations in GPU code in Google Chrome prior to 70.0.3538.110 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVEs:CVE-2018-17479

Affected products

ProductStatusVendorPackageEcosystem
chrome affected google
Upstream advisory

CVE-2018-11905

Open SourceEPSS <= 49%HIGH2018-11-06

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, Possible buffer overflow in WLAN function due to lack of input validation in values received from firmware.

CVEs:CVE-2018-11905

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-19333

Open SourceEPSS <= 49%CRITICAL2018-11-17

pkg/sentry/kernel/shm/shm.go in Google gVisor before 2018-11-01 allows attackers to overwrite memory locations in processes running as root (but not escape the sandbox) via vectors involving IPC_RMID shmctl calls, because reference counting is mishandled.

CVEs:CVE-2018-19333

Affected products

ProductStatusVendorPackageEcosystem
gvisor affected google
Upstream advisory

CVE-2018-19335

GoogleEPSS <= 49%HIGH2018-11-20

Google Monorail before 2018-06-07 has a Cross-Site Search (XS-Search) vulnerability because CSV downloads are affected by CSRF, and calculations of download times (for requests with a crafted groupby value) can be used to obtain sensitive information a...

CVEs:CVE-2018-19335

Affected products

ProductStatusVendorPackageEcosystem
monorail affected google
Upstream advisory

CVE-2018-10099

GoogleEPSS <= 49%HIGH2018-11-20

Google Monorail before 2018-04-04 has a Cross-Site Search (XS-Search) vulnerability because CSV downloads are affected by CSRF, and calculations of download times (for requests with duplicated columns) can be used to obtain sensitive information about ...

CVEs:CVE-2018-10099

Affected products

ProductStatusVendorPackageEcosystem
monorail affected google
Upstream advisory

CVE-2018-19334

GoogleEPSS <= 49%HIGH2018-11-20

Google Monorail before 2018-05-04 has a Cross-Site Search (XS-Search) vulnerability because CSV downloads are affected by CSRF, and calculations of download times (for requests with an unsupported axis) can be used to obtain sensitive information about...

CVEs:CVE-2018-19334

Affected products

ProductStatusVendorPackageEcosystem
monorail affected google
Upstream advisory

CVE-2018-11946

Open SourceEPSS <= 49%MEDIUM2018-11-27

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, the UPnP daemon should not be running out of box because it enables port forwarding without authentication.

CVEs:CVE-2018-11946

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2017-15835

Open SourceEPSS <= 49%HIGH2018-11-06

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, While processing the RIC Data Descriptor IE in an artificially crafted 802.11 frame with IE length more than 255, an infinite loop may potentiall...

CVEs:CVE-2017-15835

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-19111

GoogleEPSS <= 49%MEDIUM2018-11-08

The Google Cardboard application 1.8 for Android and 1.2 for iOS sends potentially private cleartext information to the Unity 3D Stats web site, as demonstrated by device make, model, and OS.

CVEs:CVE-2018-19111

Affected products

ProductStatusVendorPackageEcosystem
cardboard affected google
Upstream advisory

CVE-2018-11919

Open SourceEPSS <= 49%CRITICAL2018-11-27

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, there is a potential heap overflow and memory corruption due to improper error handling in SOC infrastructure.

CVEs:CVE-2018-11919

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-11995

Open SourceEPSS <= 49%HIGH2018-11-06

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, a partition name-check variable is not reset for every iteration which may cause improper termination in the META image.

CVEs:CVE-2018-11995

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-11266

Open SourceEPSS <= 49%HIGH2018-11-27

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper input validation can lead to an improper access to already freed up dci client entries while closing dci client.

CVEs:CVE-2018-11266

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2017-14888

Open SourceEPSS <= 49%CRITICAL2018-11-06

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, Userspace can pass IEs to the host driver and if multiple append commands are received, then the integer variable that stores the length can over...

CVEs:CVE-2017-14888

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-11906

Open SourceEPSS <= 49%HIGH2018-11-27

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, there is a security concern with default privileged access to ADB and debug-fs.

CVEs:CVE-2018-11906

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-11914

Open SourceEPSS <= 49%HIGH2018-11-27

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper access control can lead to device node and executable to be run from /systemrw/ which presents a potential security.

CVEs:CVE-2018-11914

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-11913

Open SourceEPSS <= 49%HIGH2018-11-27

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper configuration of dev nodes may lead to potential security issue.

CVEs:CVE-2018-11913

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-11956

Open SourceEPSS <= 49%HIGH2018-11-27

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper mounting lead to device node and executable to be run from /dsp/ which presents a potential security issue.

CVEs:CVE-2018-11956

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-11918

Open SourceEPSS <= 49%HIGH2018-11-27

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, memory allocated is automatically released by the kernel if the 'probe' function fails with an error code.

CVEs:CVE-2018-11918

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-11943

Open SourceEPSS <= 49%HIGH2018-11-27

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while processing fastboot flash command, memory leak or unexpected behavior may occur due to processing of unintialized data buffers.

CVEs:CVE-2018-11943

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2017-11078

Open SourceEPSS <= 49%HIGH2018-11-27

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while processing the boot image header, an out of bounds read can occur in boot.

CVEs:CVE-2017-11078

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-11823

Open SourceEPSS <= 49%CRITICAL2018-11-27

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, freeing device memory in driver probe failure will result in double free issue in power module.

CVEs:CVE-2018-11823

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-11907

Open SourceEPSS <= 49%HIGH2018-11-27

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper access control can lead to device node and executable to be run from /firmware/ which presents a potential issue.

CVEs:CVE-2018-11907

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-11908

Open SourceEPSS <= 49%HIGH2018-11-27

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper access control can lead to device node and executable to be run from /data/ which presents a potential issue.

CVEs:CVE-2018-11908

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-11909

Open SourceEPSS <= 49%HIGH2018-11-27

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper access control can lead to device node and executable to be run from /cache/ which presents a potential issue.

CVEs:CVE-2018-11909

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-11910

Open SourceEPSS <= 49%HIGH2018-11-27

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper access control can lead to device node and executable to be run from /persist/ which presents a potential issue.

CVEs:CVE-2018-11910

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-11911

Open SourceEPSS <= 49%HIGH2018-11-27

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper configuration of script may lead to unprivileged access.

CVEs:CVE-2018-11911

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

CVE-2018-11912

Open SourceEPSS <= 49%HIGH2018-11-27

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, improper configuration of daemons may lead to unprivileged access.

CVEs:CVE-2018-11912

Affected products

ProductStatusVendorPackageEcosystem
android affected google
Upstream advisory

Need live exploit intelligence?

Every CVE above is indexed in the Vulnetix VDB with KEV, EPSS, and PoC maturity. The interactive page surfaces that on hover.