CVE-2017-0557: Infoleak
An information disclosure vulnerability in libmpeg2 in Mediaserver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it could be used to access data without permission. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-34093073.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-0557?
CVE-2017-0557 has a medium severity rating of 5.5 based on the CVSS 3.0 scoring system.
What does CVE-2017-0557 affect?
CVE-2017-0557 affects the libmpeg2 component in Google Android versions 6.0, 6.0.1, 7.0, and 7.1.
What type of vulnerability is CVE-2017-0557?
CVE-2017-0557 is classified as an information disclosure vulnerability that can allow a local malicious application to access unauthorized data.
How do I fix CVE-2017-0557?
To fix CVE-2017-0557, users should apply the available patch released for affected Android versions.
Who is impacted by CVE-2017-0557?
Any user running an affected version of Android who may be exposed to malicious local applications is impacted by CVE-2017-0557.