CVE-2017-0463: Input Validation
An elevation of privilege vulnerability in the Qualcomm networking driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-33277611. References: QC-CR#1101792.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-0463?
CVE-2017-0463 is rated as High due to its potential for elevation of privilege that could allow arbitrary code execution within the kernel.
How do I fix CVE-2017-0463?
To fix CVE-2017-0463, ensure that your Android device is updated to a version that includes the security patch addressing this vulnerability.
Which systems are affected by CVE-2017-0463?
CVE-2017-0463 affects Android devices and specific versions of the Linux Kernel, such as 3.10 and 3.18.
What type of vulnerability is CVE-2017-0463?
CVE-2017-0463 is an elevation of privilege vulnerability that allows a local malicious application to execute arbitrary code.
Can I exploit CVE-2017-0463 remotely?
No, CVE-2017-0463 requires local access to the device as it first necessitates compromising a privileged process.