CVE-2017-0560: Infoleak
An information disclosure vulnerability in the factory reset process could enable a local malicious attacker to access data from the previous owner. This issue is rated as Moderate due to the possibility of bypassing device protection. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-30681079.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-0560?
CVE-2017-0560 is rated as Moderate due to the risk of a local malicious attacker accessing data from the previous owner after a factory reset.
How do I fix CVE-2017-0560?
To remediate CVE-2017-0560, ensure your Android device is updated to the latest version provided by Google that addresses the vulnerability.
Which Android versions are affected by CVE-2017-0560?
CVE-2017-0560 affects multiple Android versions, including 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, and several earlier versions.
What type of attack is CVE-2017-0560 associated with?
CVE-2017-0560 is associated with an information disclosure attack that can occur during the factory reset process.
Can a user protect their data from CVE-2017-0560?
Yes, users can protect their data by ensuring they perform factory resets properly and keeping their devices updated to mitigate this vulnerability.