CVE-2018-9415

Updated: 2023-12-06

CWE: Double Free

Description:

In driver_override_store and driver_override_show of bus.c, there is a possible double free due to improper locking. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android kernel Android ID: A-69129004 References: Upstream kernel.

CVSS3: 7.8


Vendor State

OS Vendor version Errata
Ubuntu 18.04 4.15.0-33.36 USN-3752-1
Ubuntu 16.04 HWE 4.15.0-33.36~16.04.1 USN-3752-2
Oracle Linux 6 UEK 4 4.1.12-124.43.4.el6uek ELSA-2020-5866
Oracle Linux 7 UEK 4 4.1.12-124.43.4.el7uek ELSA-2020-5866
Ubuntu 18.04 GCP 4.15.0-1018.19 USN-3752-1
Ubuntu 16.04 GCP 4.15.0-1018.19~16.04.2 USN-3752-3
Ubuntu 18.04 Azure 4.15.0-1022.23 USN-3752-3
Ubuntu 16.04 Azure 4.15.0-1022.22~16.04.1 USN-3752-3

KernelCare State

OS Original kernel version State
Ubuntu 18.04
4.15.0-24.26 show all hide all
4.15.0-32.35 4.15.0-20.21 4.15.0-29.31 4.15.0-23.25 4.15.0-22.24 4.15.0-30.32
Released
Ubuntu 16.04 HWE
4.15.0-24.26~16.04.1 show all hide all
4.15.0-30.32~16.04.1 4.15.0-29.31~16.04.1 4.15.0-32.35~16.04.1
Released
Oracle Linux 6 UEK 4
Ready For Release
Oracle Linux 7 UEK 4
Ready For Release
Proxmox VE 5
4.15.18-1-pve_4.15.18-15 show all hide all
4.15.18-2-pve_4.15.18-20 4.15.17-3-pve_4.15.17-12 4.15.10-1-pve_4.15.10-4 4.15.15-1-pve_4.15.15-6 4.15.17-1-pve_4.15.17-9 4.15.17-2-pve_4.15.17-10 4.15.18-1-pve_4.15.18-16 4.15.18-1-pve_4.15.18-17 4.15.18-1-pve_4.15.18-19 4.15.3-1-pve_4.15.3-1 4.15.18-2-pve_4.15.18-21
Released
Ubuntu 18.04 GCP
4.15.0-1010.10 show all hide all
4.15.0-1015.15 4.15.0-1017.18 4.15.0-1009.9 4.15.0-1008.8 4.15.0-1006.6 4.15.0-1014.14
Released
Ubuntu 16.04 GCP
4.15.0-1017.18~16.04.1 show all hide all
4.15.0-1014.14~16.04.1 4.15.0-1015.15~16.04.1
Released
Endurance 6 elrepo
Ready For Release
Endurance 7 eig 4.14
Ready For Release
Proofpoint
Ready For Release
Ubuntu 18.04 Azure
4.15.0-1014.14 show all hide all
4.15.0-1012.12 4.15.0-1021.21 4.15.0-1009.9 4.15.0-1018.18 4.15.0-1013.13 4.15.0-1019.19
Released
Ubuntu 16.04 Azure
4.15.0-1019.19~16.04.1 show all hide all
4.15.0-1014.14~16.04.1 4.15.0-1021.21~16.04.1 4.15.0-1018.18~16.04.1 4.15.0-1013.13~16.04.2
Released
Debian 10 cloud
Will Not Fix
Debian 9 backports
Will Not Fix