CVE-2017-0800: High severity Google Android vulnerability
Published Sep 5, 2017
·Updated
A elevation of privilege vulnerability in the MediaTek teei. Product: Android. Versions: Android kernel. Android ID: A-37683975. References: M-ALPS03302988.
Affected Software
2 affected components
Google Android<=7.1.2
Google Android
Event History
Sep 5, 2017
CVE Published
via Android·12:00 AM
Data Sourced
via Android·12:00 AM
SeverityWeaknessAffected Software
Sep 8, 2017
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
DescriptionWeakness
Frequently Asked Questions
1
Does exploiting this issue require prior privileges or user interaction?
The CVSS vector indicates that no prior privileges are required, but user interaction is required. The attack vector is local, so the attacker must have local access to the affected device or execution environment.
2
What security impact can successful exploitation have?
The CVSS vector rates confidentiality, integrity, and availability impacts as high. Successful exploitation could therefore affect data confidentiality, data or system integrity, and device availability.