CVE-2017-13281: Buffer Overflow
Published Apr 2, 2018
·Updated
In avrcparsbrowsingcmd of avrcparstg.cc, there is a possible stack buffer overflow due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: 8.0, 8.1. Android ID: A-71603262.
Affected Software
3 affected components
Google Android=8.0
Google Android=8.1
Google Android
Event History
Apr 2, 2018
CVE Published
via Android·12:00 AM
Apr 4, 2018
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-13281?
The severity of CVE-2017-13281 is considered critical due to the potential for remote code execution.
2
How do I fix CVE-2017-13281?
To fix CVE-2017-13281, users should update their Android devices to the latest security patch provided by Google.
3
Which versions of Android are affected by CVE-2017-13281?
CVE-2017-13281 affects Android versions 8.0 and 8.1.
4
Is user interaction required for exploiting CVE-2017-13281?
No, user interaction is not required for exploiting CVE-2017-13281.
5
What type of vulnerability is CVE-2017-13281?
CVE-2017-13281 is a stack buffer overflow vulnerability in the Bluetooth AVRCP component.