PT-2017-3021 · Google · Android

Charles He

·

Published

2017-07-14

·

Updated

2019-10-03

·

CVE-2017-0806

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Android versions 6.0 through 8.0
Description The issue is related to insufficient access control in the Android framework component GateKeeperResponse, allowing a remote attacker to potentially elevate their privileges.
Recommendations For Android versions 6.0 through 8.0, update to a version that contains a fix for this issue.

Exploit

Fix

Deserialization of Untrusted Data

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2017-02379
CVE-2017-0806

Affected Products

Android