CVE-2018-11898

HIGH

Android - Info Disclosure

Title source: llm
STIX 2.1

Description

In all android releases (Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, while processing start bss request from upper layer, out of bounds read occurs if ssid length is greater than maximum.

Scores

CVSS v3 7.8
EPSS 0.0006
EPSS Percentile 19.8%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-125
Status published
Products (1)
google/android
Published Sep 19, 2018
Tracked Since Feb 18, 2026