PT-2017-1397 · Google · Android
Published
2017-03-08
·
Updated
2019-10-03
·
CVE-2017-0528
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Android versions Kernel-3.18
Description
The issue is related to insufficient access control in the Android operating system's kernel security subsystem. It allows a remote attacker, using a local malicious application, to execute code in the context of a privileged process. This is considered a high-severity issue as it bypasses kernel-level defense in depth or exploit mitigation technology.
Recommendations
For Android version Kernel-3.18, update to a newer version that includes a fix for this issue to prevent potential exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Android