CVE-2018-9473: Google Android
High severity, CVSS 7.8. EPSS: 1.5% chance of exploitation in the next 30 days.
In ihevcd_parse_sei_payload of ihevcd_parse_headers.c, there is a possible out-of-bounds write due to an integer overflow. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. Product: Android Versions: Android-8.0 Android ID: A-65484460
Affected products
- Google Android: version 8.0 only
Published 2018-10-02. Last modified 2026-06-17.