CVE-2018-5887

HIGH

Android <2018-06-05 - Buffer Overflow

Title source: llm
STIX 2.1

Description

While processing the USB StrSerialDescriptor array, an array index out of bounds can occur in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05.

Scores

CVSS v3 7.8
EPSS 0.0004
EPSS Percentile 11.6%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-125
Status published
Products (1)
google/android
Published Jul 06, 2018
Tracked Since Feb 18, 2026