CVE-2018-9416
Severity CVSS v4.0:
CRITICAL
Type:
CWE-787
Out-of-bounds Write
Publication date:
05/12/2024
Last modified:
18/12/2024
Description
In sg_remove_scat of scsi/sg.c, there is a possible memory corruption due to<br />
an unusual root cause. This could lead to local escalation of privilege with<br />
System execution privileges needed. User interaction is not needed for<br />
exploitation.
Impact
Base Score 4.0
10.00
Severity 4.0
CRITICAL
Base Score 3.x
6.70
Severity 3.x
MEDIUM
Vulnerable products and versions
| CPE | From | Up to |
|---|---|---|
| cpe:2.3:o:google:android:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page



