CVE-2017-0422: Input Validation
A denial of service vulnerability in Bionic DNS could enable a remote attacker to use a specially crafted network packet to cause a device hang or reboot. This issue is rated as High due to the possibility of remote denial of service. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-32322088.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-0422?
CVE-2017-0422 is rated as High due to its potential for remote denial of service.
How do I fix CVE-2017-0422?
The recommended fix for CVE-2017-0422 is to update your Android device to a patched version where the vulnerability has been addressed.
Which versions of Android are affected by CVE-2017-0422?
CVE-2017-0422 affects Android versions from 4.0 to 7.1.1, including multiple sub-versions within those ranges.
What type of attack can exploit CVE-2017-0422?
CVE-2017-0422 can be exploited via specially crafted network packets that result in a denial of service condition.
What should I do if I cannot update my device to fix CVE-2017-0422?
If you cannot update your device, it is advisable to avoid connecting to untrusted networks to reduce the risk of exploitation from CVE-2017-0422.