#VU15977 Out-of-bounds write in Google Android - CVE-2018-9516
Published: November 20, 2018 / Updated: November 21, 2018
Google Android
Description
The vulnerability allows a local attacker to gain elevated privileges on the target system.
The vulnerability exists due to out-of-bounds write in hid_debug_events_read of drivers/hid/hid-debug.c when a missing bounds check. A local attacker can trigger memory corruption and execute arbitrary code with elevated privileges.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.