CVE-2017-0546: Null Pointer Dereference
An elevation of privilege vulnerability in SurfaceFlinger could enable a local malicious application to execute arbitrary code within the context of a privileged process. This issue is rated as High because it could be used to gain local access to elevated capabilities, which are not normally accessible to a third-party application. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-32628763.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-0546?
CVE-2017-0546 is rated as High due to its potential for allowing local privilege escalation.
How do I fix CVE-2017-0546?
To fix CVE-2017-0546, update your device to the latest version of Android that is not affected by this vulnerability.
Which Android versions are affected by CVE-2017-0546?
CVE-2017-0546 affects Android versions from 4.0 to 7.1.1.
What impact does CVE-2017-0546 have on my device?
CVE-2017-0546 allows a local malicious application to execute arbitrary code within a privileged process.
Is there a known exploit for CVE-2017-0546?
While there are no specific public exploits reported for CVE-2017-0546, the high severity suggests that it could be exploited by attackers.