In multiple locations, there is a possible way to bypass KASLR due to an unusual root cause. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.
History

Sat, 15 Mar 2025 15:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-200
Metrics cvssV3_1

{'score': 4.4, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N'}


Tue, 18 Feb 2025 21:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-862
Metrics cvssV3_1

{'score': 4.4, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N'}


Tue, 21 Jan 2025 17:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-862
Metrics cvssV3_1

{'score': 4.4, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 17 Jan 2025 23:15:00 +0000

Type Values Removed Values Added
Description In multiple locations, there is a possible way to bypass KASLR due to an unusual root cause. This could lead to local information disclosure with System execution privileges needed. User interaction is not needed for exploitation.
References

cve-icon MITRE

Status: PUBLISHED

Assigner: google_android

Published: 2025-01-17T23:04:49.336Z

Updated: 2025-03-15T15:09:47.458Z

Reserved: 2018-04-05T00:00:00.000Z

Link: CVE-2018-9384

cve-icon Vulnrichment

Updated: 2025-01-21T16:38:08.458Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-01-17T23:15:12.120

Modified: 2025-03-15T15:15:36.110

Link: CVE-2018-9384

cve-icon Redhat

No data.