PT-2017-2048 · Google · Android

V.E.O

·

Published

2017-05-12

·

Updated

2017-05-19

·

CVE-2017-0590

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Android versions 5.0.2 through 7.1.2
Description The issue is caused by a buffer overflow in the libhevc service of the Mediaserver application in the Android operating system. This can allow a remote attacker to cause memory corruption by using a specially crafted file, potentially leading to a denial of service. The vulnerability is related to media file and data processing.
Recommendations For versions 5.0.2 through 7.1.2, update to a version that includes the fix for this issue to prevent potential memory corruption and denial of service attacks.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2017-01215
CVE-2017-0590

Affected Products

Android