PT-2017-3400 · Google · Android
Publicado
2017-08-15
·
Atualizado
2019-10-03
·
CVE-2017-0838
CVSS v3.1
7.8
Alta
| Vetor | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Android versions 7.0, 7.1.1, 7.1.2
Description
The issue is related to an elevation of privilege vulnerability in the Android media framework, specifically in the libstagefright component. This vulnerability is associated with insufficient access control, which can be exploited to elevate privileges.
Recommendations
For Android versions 7.0, 7.1.1, and 7.1.2, update to a version that includes the fix for the libstagefright component in the media framework to resolve the issue.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Android