{"api_version":"1","generated_at":"2026-07-23T06:05:54+00:00","cve":"CVE-2017-18281","urls":{"html":"https://cve.report/CVE-2017-18281","api":"https://cve.report/api/cve/CVE-2017-18281.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2017-18281","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2017-18281"},"summary":{"title":"CVE-2017-18281","description":"A bool variable in Video function, which gets typecasted to int before being read could result in an out of bound read access in all Android releases from CAF using the linux kernel","state":"PUBLIC","assigner":"product-security@qualcomm.com","published_at":"2018-10-29 18:29:00","updated_at":"2018-12-11 15:39:00"},"problem_types":["CWE-125"],"metrics":[],"references":[{"url":"https://www.codeaurora.org/security-bulletin/2018/10/01/october-2018-code-aurora-security-bulletin","name":"https://www.codeaurora.org/security-bulletin/2018/10/01/october-2018-code-aurora-security-bulletin","refsource":"CONFIRM","tags":["Patch","Third Party Advisory"],"title":"October 2018 Code Aurora Security Bulletin - Code Aurora","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securitytracker.com/id/1041432","name":"1041432","refsource":"SECTRACK","tags":["Third Party Advisory","VDB Entry"],"title":"Google Android Multiple Flaws Let Remote Users Execute Arbitrary Code and Let Applications Gain Elevated Privileges and Obtain Potentially Sensitive Information - SecurityTracker","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2017-18281","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2017-18281","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2017","cve_id":"18281","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"google","cpe5":"android","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2017","cve_id":"18281","vulnerable":"1","versionEndIncluding":"1","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"google","cpe5":"android","cpe6":"-","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"CVE_data_meta":{"ASSIGNER":"product-security@qualcomm.com","ID":"CVE-2017-18281","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"Android for MSM, Firefox OS for MSM, QRD Android","version":{"version_data":[{"version_value":"All Android releases from CAF using the Linux kernel"}]}}]},"vendor_name":"Qualcomm, Inc."}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"A bool variable in Video function, which gets typecasted to int before being read could result in an out of bound read access in all Android releases from CAF using the linux kernel"}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"Use of Out-of-range Pointer Offset in Video"}]}]},"references":{"reference_data":[{"name":"1041432","refsource":"SECTRACK","url":"http://www.securitytracker.com/id/1041432"},{"name":"https://www.codeaurora.org/security-bulletin/2018/10/01/october-2018-code-aurora-security-bulletin","refsource":"CONFIRM","url":"https://www.codeaurora.org/security-bulletin/2018/10/01/october-2018-code-aurora-security-bulletin"}]}},"nvd":{"publishedDate":"2018-10-29 18:29:00","lastModifiedDate":"2018-12-11 15:39:00","problem_types":["CWE-125"],"metrics":{"baseMetricV3":{"cvssV3":{"version":"3.0","vectorString":"CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"NONE","availabilityImpact":"NONE","baseScore":5.5,"baseSeverity":"MEDIUM"},"exploitabilityScore":1.8,"impactScore":3.6},"baseMetricV2":{"cvssV2":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:N/A:N","accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"NONE","availabilityImpact":"NONE","baseScore":2.1},"severity":"LOW","exploitabilityScore":3.9,"impactScore":2.9,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}},"configurations":{"CVE_data_version":"4.0","nodes":[{"operator":"OR","children":[],"cpe_match":[{"vulnerable":true,"cpe23Uri":"cpe:2.3:o:google:android:-:*:*:*:*:*:*:*","cpe_name":[]}]}]}},"legacy_mitre":{"record":{"CveYear":"2017","CveId":"18281","Ordinal":"127729","Title":"CVE-2017-18281","CVE":"CVE-2017-18281","Year":"2017"},"notes":[{"CveYear":"2017","CveId":"18281","Ordinal":"1","NoteData":"A bool variable in Video function, which gets typecasted to int before being read could result in an out of bound read access in all Android releases from CAF using the linux kernel","Type":"Description","Title":null},{"CveYear":"2017","CveId":"18281","Ordinal":"2","NoteData":"2018-10-29","Type":"Other","Title":"Published"},{"CveYear":"2017","CveId":"18281","Ordinal":"3","NoteData":"2018-10-30","Type":"Other","Title":"Modified"}]}}}