PT-2018-8337 · Google+1 · Android+1
Published
2018-06-07
·
Updated
2018-07-27
·
CVE-2017-6292
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Android versions prior to the 2018-06-05 security patch level
Description
The issue is related to an integer overflow in NVIDIA TLZ TrustZone, which could lead to a local escalation of privilege in the TrustZone. No additional execution privileges are needed, and user interaction is not required for exploitation. The issue is rated as high.
Recommendations
For Android versions prior to the 2018-06-05 security patch level, apply the 2018-06-05 security patch to resolve the issue.
Fix
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Android
Nvidia Tlk Trustzone