Medium severity5.5NVD Advisory· Published Nov 19, 2024· Updated Jun 17, 2026
CVE-2018-9340
CVE-2018-9340
Description
In ResStringPool::setTo of ResourceTypes.cpp, it's possible for an attacker to control the value of mStringPoolSize to be out of bounds, causing information disclosure.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
86+ 7 more
- (no CPE)range: 6
- cpe:2.3:o:google:android:6.0:*:*:*:*:*:*:*
- cpe:2.3:o:google:android:6.0.1:*:*:*:*:*:*:*
- cpe:2.3:o:google:android:7.0:*:*:*:*:*:*:*
- cpe:2.3:o:google:android:7.1.1:*:*:*:*:*:*:*
- cpe:2.3:o:google:android:7.1.2:*:*:*:*:*:*:*
- cpe:2.3:o:google:android:8.0:*:*:*:*:*:*:*
- cpe:2.3:o:google:android:8.1:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1- source.android.com/security/bulletin/2018-06-01nvdPatchVendor Advisory
News mentions
0No linked articles in our index yet.