CVE-2017-0408: High severity Google Android vulnerability
Published Feb 6, 2017
·Updated
A remote code execution vulnerability in libgdx could enable an attacker using a specially crafted file to execute arbitrary code in the context of an unprivileged process. This issue is rated as High due to the possibility of remote code execution in an application that uses this library. Product: Android. Versions: 7.1.1. Android ID: A-32769670.
Affected Software
2 affected components
Google Android=7.1.1
Google Android
Event History
Feb 6, 2017
CVE Published
via Android·12:00 AM
Feb 8, 2017
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
DescriptionWeakness
Data Sourced
via NVD·03:59 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2017-0408?
CVE-2017-0408 is rated as High due to its potential for remote code execution.
2
How do I fix CVE-2017-0408?
To fix CVE-2017-0408, update to the latest version of libgdx that addresses this vulnerability.
3
What systems are affected by CVE-2017-0408?
CVE-2017-0408 primarily affects Android version 7.1.1 that uses the libgdx library.
4
What type of vulnerability is CVE-2017-0408?
CVE-2017-0408 is a remote code execution vulnerability.
5
Can CVE-2017-0408 be exploited remotely?
Yes, CVE-2017-0408 can be exploited remotely through specially crafted files.