PT-2017-1021 · Google · Android

Publicado

2017-01-12

·

Atualizado

2017-01-24

·

CVE-2016-8442

CVSS v3.1

7.8

Alta

VetorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Android versions Kernel 3.18
Description The issue is related to insufficient input validation, which could allow unauthorized memory access in the hypervisor. This may enable a local attacker to access hypervisor memory using the HLOS.
Recommendations For Android version Kernel 3.18, consider restricting access to the hypervisor memory as a temporary mitigation measure until a patch is available.

Correção

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2017-00056
CVE-2016-8442

Produtos afetados

Android