First published: Mon Mar 06 2017(Updated: )
An information disclosure vulnerability in the HTC sound codec driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10. Android ID: A-33547247.
Credit: security@android.com
Affected Software | Affected Version | How to fix |
---|---|---|
Linux Kernel | =3.10 | |
Android |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-0535 is rated as Moderate due to the requirement of compromising a privileged process.
CVE-2017-0535 can enable a local malicious application to access data outside of its permission levels on Android devices.
CVE-2017-0535 affects Android devices running version Kernel-3.10.
To mitigate CVE-2017-0535, ensure your Android device is updated with the latest security patches that address this vulnerability.
Exploitation of CVE-2017-0535 is not straightforward, as it requires the attacker to first compromise a privileged process.