PT-2017-1433 · Google · Android

Published

2017-03-08

·

Updated

2019-10-03

·

CVE-2017-0486

CVSS v2.0

7.1

High

VectorAV:N/AC:M/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Android versions 6.0 through 7.1.1
Description A denial of service issue in Mediaserver could allow an attacker to cause a device hang or reboot using a specially crafted file, potentially enabling remote denial of service. This issue is related to inadequate access control in the Mediaserver component of the Android operating system.
Recommendations For Android versions 6.0 through 7.1.1, update to a version that includes the fix for this issue to prevent potential denial of service attacks. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Access Control

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2017-00573
CVE-2017-0486

Affected Products

Android