CVE-2017-0794: Race Condition
Published Sep 5, 2017
·Updated
A elevation of privilege vulnerability in the Upstream kernel scsi driver. Product: Android. Versions: Android kernel. Android ID: A-35644812.
Affected Software
2 affected components
Google Android<=8.0
Google Android
Event History
Sep 5, 2017
CVE Published
via Android·12:00 AM
Data Sourced
via Android·12:00 AM
SeverityWeaknessAffected Software
Sep 8, 2017
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
DescriptionWeakness
Data Sourced
via NVD·08:29 PM
DescriptionSeverityWeaknessAffected Software
Jan 11, 2024
Data Sourced
via Debian·10:23 PM
DescriptionAffected Software
Data Sourced
via Launchpad·10:23 PM
Description
Jul 4, 2026
Data Sourced
via Ubuntu·11:19 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2017-0794?
The severity of CVE-2017-0794 is medium.
2
Which software is affected by CVE-2017-0794?
Android kernel versions 3.13.0-161.211, 4.4.0-98.121, and 4.14~ are affected by CVE-2017-0794.
3
How can I fix CVE-2017-0794?
To fix CVE-2017-0794, update your Android kernel to version 3.13.0-161.211, 4.4.0-98.121, or 4.14~.
4
Where can I find more information about CVE-2017-0794?
You can find more information about CVE-2017-0794 at the following sources: [Source Android](https://source.android.com/security/bulletin/2017-09-01), [Security Tracker Debian](https://security-tracker.debian.org/tracker/CVE-2017-0794), [SecurityFocus](http://www.securityfocus.com/bid/100667).