PT-2017-2297 · Linux+1 · Linux Kernel+1
Publicado
2017-06-13
·
Atualizado
2017-07-08
·
CVE-2015-9029
CVSS v2.0
9.3
Alta
| Vetor | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Android versions prior to a fixed version (exact version not specified)
Linux kernel (affected versions not specified)
Description
The issue is related to inadequate access control to modem memory, which can be exploited by a remote attacker to compromise information security. The vulnerability exists in all Android releases from CAF using the Linux kernel.
Recommendations
For Android, update to a version that includes the fix for this issue, once available.
For Linux kernel, apply the necessary security patches or configuration changes to restrict access to modem memory, as recommended by the Linux kernel community.
As a temporary workaround, consider restricting access to modem memory to minimize the risk of exploitation.
Correção
Improper Access Control
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Android
Linux Kernel