CVE-2018-18318
HIGHQiku 360 Mobile Phone N6 Pro Firmware - NULL Pointer Dereference
Title source: ruleDescription
The /dev/block/mmcblk0rpmb driver kernel module on Qiku 360 Phone N6 Pro 1801-A01 devices allows attackers to cause a denial of service (NULL pointer dereference and device crash) via a crafted 0xc0d8b300 ioctl call.
References (1)
Core 1
Core References
Exploit, Third Party Advisory x_refsource_misc
https://github.com/datadancer/HIAFuzz/blob/master/360%20Phone%20N6%20Pro%20Kernel%20Vuln.md
Scores
CVSS v3
7.5
EPSS
0.0045
EPSS Percentile
63.5%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Details
CWE
CWE-476
Status
published
Products (1)
qiku/360_mobile_phone_n6_pro_firmware
v096
Published
Oct 15, 2018
Tracked Since
Feb 18, 2026