CVE-2017-0460: High severity android vulnerability
An elevation of privilege vulnerability in the Qualcomm networking driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-31252965. References: QC-CR#1098801.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2017-0460?
CVE-2017-0460 is rated as High due to its potential to allow a local malicious application to execute arbitrary code within the kernel's context.
How does CVE-2017-0460 occur?
CVE-2017-0460 occurs when a privileged process is compromised, which then allows an elevation of privilege in the Qualcomm networking driver.
Which products are affected by CVE-2017-0460?
CVE-2017-0460 affects Android operating systems using specific versions of the Linux kernel, such as 3.10 and 3.18.
How can I mitigate the risk of CVE-2017-0460?
Mitigating CVE-2017-0460 involves applying security patches provided by the device manufacturer to ensure the affected kernel versions are secured.
Is there a workaround for CVE-2017-0460?
There is no documented workaround for CVE-2017-0460 other than updating to the patched versions of the affected software.