2018 CVE Vulnerabilities

17,817 CVEs published in 2018.

CVE IDSeverityCVSSDescription
CVE-2018-9387HIGH7.8In multiple functions of mnh-sm.c, there is a possible way to trigger a heap overflow due to an integer overflow. This c...
CVE-2018-9447MEDIUM5.5In onCreate of EmergencyCallbackModeExitDialog.java, there is a possible way to crash the emergency callback mode due to...
CVE-2018-9434HIGH7.8In multiple functions of Parcel.cpp, there is a possible way to bypass address space layout randomization. This could le...
CVE-2018-9384MEDIUM4.4In multiple locations, there is a possible way to bypass KASLR due to an unusual root cause. This could lead to local in...
CVE-2018-9383MEDIUM4.4In asn1_ber_decoder of asn1_decoder.c, there is a possible out of bounds read due to a missing bounds check. This could ...
CVE-2018-9382HIGH7.8In multiple functions of WifiServiceImpl.java, there is a possible way to activate Wi-Fi hotspot from a non-owner profil...
CVE-2018-9379MEDIUM5.5In multiple functions of MiniThumbFile.java, there is a possible way to view the thumbnails of deleted photos due to a c...
CVE-2018-9375HIGH7.8In multiple functions of UserDictionaryProvider.java, there is a possible way to add and delete words in the user dictio...
CVE-2018-25108HIGH7.5An unauthenticated remote attacker can cause a DoS in the controller due to uncontrolled resource consumption.
CVE-2018-4301CRITICAL9.8This issue is fixed in SCSSU-201801. A potential stack based buffer overflow existed in GemaltoKeyHandle.cpp.
CVE-2018-25107HIGH7.5The Crypt::Random::Source package before 0.13 for Perl has a fallback to the built-in rand() function, which is not a se...
CVE-2018-25106MEDIUM6.3A vulnerability, which was classified as critical, has been found in webuidesigning NebulaX Theme up to 5.0 on WordPress...
CVE-2018-9391MEDIUM6.7In update_gps_sv and output_vzw_debug of vendor/mediatek/proprietary/hardware/connectivity/gps/gps_hal/src/gpshal_wo...
CVE-2018-9390MEDIUM6.7In procfile_write of gl_proc.c, there is a possible out of bounds read of a function pointer due to an incorrect bo...
CVE-2018-9388CRITICAL9.8In store_upgrade and store_cmd of drivers/input/touchscreen/stm/ftm4_pdc.c, there are out of bound writes due to missing...
CVE-2018-9386MEDIUM6.7In reboot_block_command of htc reboot_block driver, there is a possible stack buffer overflow due to a missing bound...
CVE-2018-9463MEDIUM6.7In sw49408_irq_runtime_engine_debug of touch_sw49408.c, there is a possible out of bounds write due to an incorrect ...
CVE-2018-9462MEDIUM6.7In store_cmd of ftm4_pdc.c, there is a possible out of bounds write due to an incorrect bounds check. This could lea...
CVE-2018-9439MEDIUM6.7In __unregister_prot_hook and packet_release of af_packet.c, there is a possible use-after-free due to improper lock...
CVE-2018-9416MEDIUM6.7In sg_remove_scat of scsi/sg.c, there is a possible memory corruption due to an unusual root cause. This could lead ...
CVE-2018-9408MEDIUM4.4In m3326_gps_write and m3326_gps_read of gps.s, there is a possible Out Of Bounds Read due to a missing bounds check...
CVE-2018-9407MEDIUM5.5In emmc_rpmb_ioctl of emmc_rpmb.c, there is an Information Disclosure due to a Missing Bounds Check. This could lead to ...
CVE-2018-9404MEDIUM6.7In oemCallback of ril.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to lo...
CVE-2018-9403MEDIUM6.7In the MTK_FLP_MSG_HAL_DIAG_REPORT_DATA_NTF handler of flp2hal_- interface.c, there is a possible stack buffer overf...
CVE-2018-9402HIGH7.8In multiple functions of gl_proc.c, there is a buffer overwrite due to a missing bounds check. This could lead to escala...

Check if your code is affected by 2018 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now