CVE-2017-0385CVE-2017-0385

Affected configuration(s):

cpe:/o:google:android:4.0
cpe:/o:google:android:4.0.1
cpe:/o:google:android:4.0.2
cpe:/o:google:android:4.0.3
cpe:/o:google:android:4.0.4
cpe:/o:google:android:4.1
cpe:/o:google:android:4.1.2
cpe:/o:google:android:4.2
cpe:/o:google:android:4.2.1
cpe:/o:google:android:4.2.2
cpe:/o:google:android:4.3
cpe:/o:google:android:4.3.1
cpe:/o:google:android:4.4
cpe:/o:google:android:4.4.1
cpe:/o:google:android:4.4.2
cpe:/o:google:android:4.4.3
cpe:/o:google:android:4.4.4
cpe:/o:google:android:5.0
cpe:/o:google:android:5.0.1
cpe:/o:google:android:5.0.2
cpe:/o:google:android:5.1
cpe:/o:google:android:5.1.0
cpe:/o:google:android:5.1.1
cpe:/o:google:android:6.0
cpe:/o:google:android:6.0.1
cpe:/o:google:android:7.0
cpe:/o:google:android:7.1.0

Date published: 2017-01-12T15:59:02.093-05:00

Date last modified: 2017-01-18T15:33:20.390-05:00

CVSS Score: 9.3

Principal attack vector: NETWORK

Complexity:  MEDIUM

Reference URL: http://www.securityfocus.com/bid/95239

Summary: An elevation of privilege vulnerability in Audioserver could enable a local malicious application to execute arbitrary code within the context of a privileged process. This issue is rated as High because it could be used to gain local access to elevated capabilities, which are not normally accessible to a third-party application. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1. Android ID: A-32585400.

CategoriesUncategorised

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.