CVE-2017-0386: Critical severity android vulnerability
An elevation of privilege vulnerability in the libnl library could enable a local malicious application to execute arbitrary code within the context of a privileged process. This issue is rated as High because it could be used to gain local access to elevated capabilities, which are not normally accessible to a third-party application. Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1. Android ID: A-32255299.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-0386?
CVE-2017-0386 is rated as High due to its potential to allow local applications to execute arbitrary code and gain elevated privileges.
How do I fix CVE-2017-0386?
To remediate CVE-2017-0386, update to a patched version of the affected Android operating system.
Which versions of Android are affected by CVE-2017-0386?
CVE-2017-0386 affects Android versions 5.0, 5.0.1, 5.0.2, 5.1, 5.1.0, 5.1.1, 6.0, 6.0.1, 7.0, and 7.1.0.
What impact does CVE-2017-0386 have on users?
The impact of CVE-2017-0386 could lead to unauthorized local access and manipulation of system resources by a malicious local application.
Is CVE-2017-0386 remotely exploitable?
CVE-2017-0386 is not remotely exploitable; it requires local access to the device.