PT-2017-15484 · Huawei+1 · Nem-L21+6

Publicado

2017-11-22

·

Atualizado

2017-12-12

·

CVE-2017-2697

CVSS v2.0

9.3

Alta

VetorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions NMO-L31C432B120 and earlier versions NEM-L21C432B100 and earlier versions NEM-L51C432B120 and earlier versions KNT-AL10C746B160 and earlier versions VNS-L21C185B142 and earlier versions CAM-L21C10B130 and earlier versions CAM-L21C185B141 and earlier versions
Description The goldeneye driver has a buffer overflow issue. An attacker with root privilege of the Android system can trick a user into installing a malicious application, and send a given parameter to the smartphone to crash the system or escalate privilege.
Recommendations For NMO-L31C432B120 and earlier versions, update to a version later than NMO-L31C432B120 to resolve the issue. For NEM-L21C432B100 and earlier versions, update to a version later than NEM-L21C432B100 to resolve the issue. For NEM-L51C432B120 and earlier versions, update to a version later than NEM-L51C432B120 to resolve the issue. For KNT-AL10C746B160 and earlier versions, update to a version later than KNT-AL10C746B160 to resolve the issue. For VNS-L21C185B142 and earlier versions, update to a version later than VNS-L21C185B142 to resolve the issue. For CAM-L21C10B130 and earlier versions, update to a version later than CAM-L21C10B130 to resolve the issue. For CAM-L21C185B141 and earlier versions, update to a version later than CAM-L21C185B141 to resolve the issue.

Correção

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2017-2697

Produtos afetados

Android
Cam-L21
Knt-Al10
Nem-L21
Nem-L51
Nmo-L31
Vns-L21