PT-2017-3400 · Google · Android
Published
2017-08-15
·
Updated
2019-10-03
·
CVE-2017-0838
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Android versions 7.0, 7.1.1, 7.1.2
Description
The issue is related to an elevation of privilege vulnerability in the Android media framework, specifically in the libstagefright component. This vulnerability is associated with insufficient access control, which can be exploited to elevate privileges.
Recommendations
For Android versions 7.0, 7.1.1, and 7.1.2, update to a version that includes the fix for the libstagefright component in the media framework to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Android