Vulnerabilities > CVE-2018-9515 - Unspecified vulnerability in Google Android

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
google
exploit available

Summary

In sdcardfs_create and sdcardfs_mkdir of inode.c, there is a possible memory corruption due to improper locking. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android kernel Android ID: A-111641492 References: N/A

Vulnerable Configurations

Part Description Count
OS
Google
1

Exploit-Db

descriptionAndroid - sdcardfs Changes current->fs Without Proper Locking. CVE-2018-9515. Dos exploit for Android platform. Tags: Denial of Service (DoS)
fileexploits/android/dos/45558.txt
idEDB-ID:45558
last seen2018-10-08
modified2018-10-08
platformandroid
port
published2018-10-08
reporterExploit-DB
sourcehttps://www.exploit-db.com/download/45558/
titleAndroid - sdcardfs Changes current->fs Without Proper Locking
typedos