CVE-2017-0524: High severity android vulnerability
An elevation of privilege vulnerability in the Synaptics touchscreen driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-33002026.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2017-0524?
CVE-2017-0524 is rated as High due to its potential for local elevation of privilege.
How do I fix CVE-2017-0524?
To mitigate CVE-2017-0524, update the affected Android devices to the latest security patches provided by the vendor.
Which versions of Android are affected by CVE-2017-0524?
CVE-2017-0524 impacts Android versions that utilize the vulnerable Synaptics touchscreen driver.
What type of vulnerability is CVE-2017-0524?
CVE-2017-0524 is an elevation of privilege vulnerability that allows arbitrary code execution in the kernel context.
Who is affected by CVE-2017-0524?
Users of devices running vulnerable versions of Android which include the affected Synaptics touchscreen driver are at risk from CVE-2017-0524.