PT-2017-15484 · Huawei+1 · Nem-L21+6
Publicado
2017-11-22
·
Atualizado
2017-12-12
·
CVE-2017-2697
CVSS v2.0
9.3
Alta
| Vetor | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
NMO-L31C432B120 and earlier versions
NEM-L21C432B100 and earlier versions
NEM-L51C432B120 and earlier versions
KNT-AL10C746B160 and earlier versions
VNS-L21C185B142 and earlier versions
CAM-L21C10B130 and earlier versions
CAM-L21C185B141 and earlier versions
Description
The goldeneye driver has a buffer overflow issue. An attacker with root privilege of the Android system can trick a user into installing a malicious application, and send a given parameter to the smartphone to crash the system or escalate privilege.
Recommendations
For NMO-L31C432B120 and earlier versions, update to a version later than NMO-L31C432B120 to resolve the issue.
For NEM-L21C432B100 and earlier versions, update to a version later than NEM-L21C432B100 to resolve the issue.
For NEM-L51C432B120 and earlier versions, update to a version later than NEM-L51C432B120 to resolve the issue.
For KNT-AL10C746B160 and earlier versions, update to a version later than KNT-AL10C746B160 to resolve the issue.
For VNS-L21C185B142 and earlier versions, update to a version later than VNS-L21C185B142 to resolve the issue.
For CAM-L21C10B130 and earlier versions, update to a version later than CAM-L21C10B130 to resolve the issue.
For CAM-L21C185B141 and earlier versions, update to a version later than CAM-L21C185B141 to resolve the issue.
Correção
Buffer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Android
Cam-L21
Knt-Al10
Nem-L21
Nem-L51
Nmo-L31
Vns-L21