PT-2017-1438 · Google · Android

Fang Chen

+1

·

Published

2017-03-08

·

Updated

2019-10-03

·

CVE-2017-0481

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Android versions 4.4.4 through 7.1.1
Description An elevation of privilege issue in the NFC component could allow a proximate attacker to execute arbitrary code within the context of a privileged process. This issue is rated as High because it could be used to gain local access to elevated capabilities, which are not normally accessible to a third-party application. The vulnerability is related to insufficient access control in the NFC application of the Android operating system.
Recommendations For Android versions 4.4.4 through 7.1.1, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2017-00578
CVE-2017-0481

Affected Products

Android