CVE-2018-11965

HIGH

Android - Improper Privilege Management via proptrigger.sh Execution

Title source: llm
STIX 2.1

Description

In all android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the linux kernel, Anyone can execute proptrigger.sh which will lead to change in properties.

References (1)

Core 1
Core References

Scores

CVSS v3 7.8
EPSS 0.0014
EPSS Percentile 3.7%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-269
Status published
Products (1)
google/android
Published Dec 20, 2018
Tracked Since Feb 18, 2026