CVE-2017-0391: High severity android vulnerability
A denial of service vulnerability in decoder/ihevcddecode.c in libhevc in Mediaserver could enable a remote attacker to use a specially crafted file to cause a device hang or reboot. This issue is rated as High due to the possibility of remote denial of service. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1. Android ID: A-32322258.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-0391?
CVE-2017-0391 is rated as High due to the potential for remote denial of service.
How do I fix CVE-2017-0391?
To fix CVE-2017-0391, update your Android device to the latest available version or security patch that addresses this vulnerability.
What versions of Android are affected by CVE-2017-0391?
CVE-2017-0391 affects Android versions 6.0, 6.0.1, 7.0, and 7.1.0.
Can CVE-2017-0391 be exploited remotely?
Yes, CVE-2017-0391 can be exploited remotely using a specially crafted file.
What type of attack does CVE-2017-0391 facilitate?
CVE-2017-0391 facilitates a denial of service attack, causing devices to hang or reboot.