Vulnerability Database

309,083

Total vulnerabilities in the database

CVE-2018-9438

When a device connects only over WiFi VPN, the device may not receive security updates due to some incorrect checks. This could lead to a local denial of service of security updates with no additional execution privileges needed. User interaction is needed for exploitation. Product: Android Versions: Android-8.1 Android ID: A-78644887.

  • Published: Nov 6, 2018
  • Updated: Nov 9, 2025
  • CVE: CVE-2018-9438
  • Severity: Low
  • Exploit:

CVSS v2:

  • Severity: Low
  • Score: 4.7
  • AV:L/AC:M/Au:N/C:N/I:N/A:C

No CWE or OWASP classifications available.