CVE-2017-0606: High severity android vulnerability
An elevation of privilege vulnerability in the Qualcomm sound driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-34088848. References: QC-CR#1116015.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2017-0606?
CVE-2017-0606 is rated as High due to the potential for a local malicious application to execute arbitrary code within the kernel.
How do I fix CVE-2017-0606?
To fix CVE-2017-0606, update the affected Android device to the latest security patch provided by the manufacturer.
Which versions of Android are affected by CVE-2017-0606?
CVE-2017-0606 affects devices running kernel version 3.10 and possibly other later versions.
Can CVE-2017-0606 lead to remote code execution?
CVE-2017-0606 does not directly allow remote code execution but could lead to local elevation of privilege within the kernel.
What type of vulnerability is CVE-2017-0606?
CVE-2017-0606 is an elevation of privilege vulnerability in the Qualcomm sound driver.