PT-2017-15484 · Huawei+1 · Nem-L21+6
Published
2017-11-22
·
Updated
2017-12-12
·
CVE-2017-2697
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
NMO-L31C432B120 and earlier versions
NEM-L21C432B100 and earlier versions
NEM-L51C432B120 and earlier versions
KNT-AL10C746B160 and earlier versions
VNS-L21C185B142 and earlier versions
CAM-L21C10B130 and earlier versions
CAM-L21C185B141 and earlier versions
Description
The goldeneye driver has a buffer overflow issue. An attacker with root privilege of the Android system can trick a user into installing a malicious application, and send a given parameter to the smartphone to crash the system or escalate privilege.
Recommendations
For NMO-L31C432B120 and earlier versions, update to a version later than NMO-L31C432B120 to resolve the issue.
For NEM-L21C432B100 and earlier versions, update to a version later than NEM-L21C432B100 to resolve the issue.
For NEM-L51C432B120 and earlier versions, update to a version later than NEM-L51C432B120 to resolve the issue.
For KNT-AL10C746B160 and earlier versions, update to a version later than KNT-AL10C746B160 to resolve the issue.
For VNS-L21C185B142 and earlier versions, update to a version later than VNS-L21C185B142 to resolve the issue.
For CAM-L21C10B130 and earlier versions, update to a version later than CAM-L21C10B130 to resolve the issue.
For CAM-L21C185B141 and earlier versions, update to a version later than CAM-L21C185B141 to resolve the issue.
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Android
Cam-L21
Knt-Al10
Nem-L21
Nem-L51
Nmo-L31
Vns-L21