SELinux Permissions Bypass Vulnerability in crash_dump.te

SELinux Permissions Bypass Vulnerability in crash_dump.te

CVE-2018-9488 · MEDIUM Severity

AV:L/AC:L/AU:N/C:P/I:P/A:P

In the SELinux permissions of crash_dump.te, there is a permissions bypass due to a missing restriction. This could lead to a local escalation of privilege, with System privileges needed. User interaction is not needed for exploitation. Product: Android Versions: Android-8.0 Android-8.1 Android-9.0 Android ID: A-110107376.

Learn more about our Cis Benchmark Audit For Distribution Independent Linux.