CVE-2017-0613: Input Validation
An elevation of privilege vulnerability in the Qualcomm Secure Execution Environment Communicator driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-35400457. References: QC-CR#1086140.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2017-0613?
CVE-2017-0613 is rated as High due to its requirement for compromising a privileged process to exploit the vulnerability.
How do I fix CVE-2017-0613?
To mitigate CVE-2017-0613, update your device to a patched version of the Android operating system or Linux kernel.
Which systems are affected by CVE-2017-0613?
CVE-2017-0613 affects Google Android devices and Linux kernels 3.10 and 3.18.
What type of vulnerability is CVE-2017-0613?
CVE-2017-0613 is an elevation of privilege vulnerability that allows a local malicious application to execute arbitrary code.
Can CVE-2017-0613 be exploited remotely?
No, CVE-2017-0613 requires local access to the device to exploit the vulnerability.