CVE-2017-0489: Medium severity android vulnerability
An elevation of privilege vulnerability in Location Manager could enable a local malicious application to bypass operating system protections for location data. This issue is rated as Moderate because it could be used to generate inaccurate data. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-33091107.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-0489?
CVE-2017-0489 is rated as Moderate due to its potential to generate inaccurate location data.
How do I fix CVE-2017-0489?
Fixing CVE-2017-0489 involves updating to the latest version of Android that addresses this vulnerability.
What types of devices are affected by CVE-2017-0489?
CVE-2017-0489 affects various versions of Android including 4.0 through 6.0.1.
Can CVE-2017-0489 be exploited remotely?
CVE-2017-0489 requires local access to the device for exploitation.
What is the impact of CVE-2017-0489 on user privacy?
CVE-2017-0489 could compromise user privacy by allowing malicious applications to bypass protections for location data.