CVE-2018-9375
In multiple functions of UserDictionaryProvider.java, there is a possible way to add and delete words in the user dictionary due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Vendor
Product
CWE
Yayın Tarihi
2025-01-17 23:15:11
Güncelleme
2025-07-03 15:00:59
Source Identifier
security@android.com
KEV Date Added
-