2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-9471 | HIGH | 7.8 | 0.2% | Nov 20, 2024 | In the deserialization constructor of NanoAppFilter.java, there is a possible loss of data due to type confusion. This c... |
| CVE-2018-9470 | HIGH | 8.8 | 0.2% | Nov 20, 2024 | In bff_Scanner_addOutPos of Scanner.c, there is a possible out-of-bounds write due to an incorrect bounds check. This co... |
| CVE-2018-9469 | HIGH | 7.8 | 0.1% | Nov 20, 2024 | In multiple functions of ShortcutService.java, there is a possible creation of a spoofed shortcut due to a missing permi... |
| CVE-2018-9468 | HIGH | 7.1 | 0.2% | Nov 20, 2024 | In query of DownloadManager.java, there is a possible read/write of arbitrary files due to a permissions bypass. This co... |
| CVE-2018-9467 | CRITICAL | 9.8 | 0.3% | Nov 20, 2024 | In the getHost() function of UriTest.java, there is the possibility of incorrect web origin determination. This could le... |
| CVE-2018-9466 | HIGH | 8.8 | 0.3% | Nov 19, 2024 | In the xmlSnprintfElementContent function of valid.c, there is a possible out of bounds write. This could lead to remote... |
| CVE-2018-9456 | HIGH | 7.5 | 0.3% | Nov 19, 2024 | In sdpu_extract_attr_seq of sdp_utils.cc, there is a possible out of bounds read due to an incorrect bounds check. This ... |
| CVE-2018-9440 | MEDIUM | 6.5 | 0.2% | Nov 19, 2024 | In parse of M3UParser.cpp there is a possible resource exhaustion due to improper input validation. This could lead to d... |
| CVE-2018-9433 | HIGH | 8.8 | 0.2% | Nov 19, 2024 | In ArrayConcatVisitor of builtins-array.cc, there is a possible type confusion due to improper input validation. This co... |
| CVE-2018-9432 | HIGH | 7.8 | 0.1% | Nov 19, 2024 | In createPhonebookDialogView and createMapDialogView of BluetoothPermissionActivity.java, there is a possible permission... |
| CVE-2018-9428 | HIGH | 7.8 | 0.1% | Nov 19, 2024 | In startDevice of AAudioServiceStreamBase.cpp there is a possible out of bounds write due to a use after free. This coul... |
| CVE-2018-9424 | HIGH | 7.8 | 0.1% | Nov 19, 2024 | In CryptoPlugin::decrypt of CryptoPlugin.cpp, there is a possible out of bounds write due to a missing bounds check. Thi... |
| CVE-2018-9421 | MEDIUM | 5.5 | 0.1% | Nov 19, 2024 | In writeInplace of Parcel.cpp, there is a possible information leak across processes, using Binder, due to uninitialized... |
| CVE-2018-9420 | MEDIUM | 5.5 | 0.1% | Nov 19, 2024 | In BnCameraService::onTransact of CameraService.cpp, there is a possible information disclosure due to uninitialized dat... |
| CVE-2018-9419 | HIGH | 7.5 | 0.3% | Nov 19, 2024 | In l2cble_process_sig_cmd of l2c_ble.cc, there is a possible out of bounds read due to a missing bounds check. This coul... |
| CVE-2018-9417 | HIGH | 7.8 | 0.1% | Nov 19, 2024 | In f_hidg_read and hidg_disable of f_hid.c, there is a possible use-after-free due to improper locking. This could lead ... |
| CVE-2018-9412 | MEDIUM | 5.5 | 0.1% | Nov 19, 2024 | In removeUnsynchronization of ID3.cpp there is a possible resource exhaustion due to improper input validation. This cou... |
| CVE-2018-9411 | HIGH | 8.8 | 0.5% | Nov 19, 2024 | In decrypt of ClearKeyCasPlugin.cpp there is a possible out-of-bounds write due to a missing bounds check. This could le... |
| CVE-2018-9410 | MEDIUM | 5.5 | 0.1% | Nov 19, 2024 | In analyzeAxes of FontUtils.cpp, there is a possible out of bounds read due to a missing bounds check. This could lead t... |
| CVE-2018-9365 | HIGH | 8.8 | 0.2% | Nov 19, 2024 | In smp_data_received of smp_l2c.cc, there is a possible out of bounds read followed by code execution due to a missing b... |
| CVE-2018-9409 | HIGH | 7.8 | 0.1% | Nov 19, 2024 | In HWCSession::SetColorModeById of hwc_session.cpp, there is a possible out of bounds write due to a missing bounds chec... |
| CVE-2018-9372 | HIGH | 7.8 | 0.1% | Nov 19, 2024 | In cmd_flash_mmc_sparse_img of dl_commands.c, there is a possible out of bounds write due to a missing bounds check. Thi... |
| CVE-2018-9371 | MEDIUM | 6.4 | 0.1% | Nov 19, 2024 | In the Mediatek Preloader, there are out of bounds reads and writes due to an exposed interface that allows arbitrary pe... |
| CVE-2018-9370 | HIGH | 7.3 | 0.1% | Nov 19, 2024 | In download.c there is a special mode allowing user to download data into memory and causing possible memory corruptions... |
| CVE-2018-9369 | HIGH | 7.3 | 0.1% | Nov 19, 2024 | In bootloader there is fastboot command allowing user specified kernel command line arguments. This could lead to local ... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now