CVE-2017-13322: Critical severity android vulnerability
In endCallForSubscriber of PhoneInterfaceManager.java, there is a possible way to prevent access to emergency services due to a logic error in the code. This could lead to a local denial of service with no additional execution privileges needed. User interaction is not needed for exploitation.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-13322?
CVE-2017-13322 has a moderate severity level due to its potential for local denial of service without requiring additional execution privileges.
How do I fix CVE-2017-13322?
To fix CVE-2017-13322, users should update their Android devices to the latest software version that includes the security patch.
Which Android versions are affected by CVE-2017-13322?
CVE-2017-13322 affects Android versions 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, and 8.1.
Can CVE-2017-13322 be exploited without user interaction?
Yes, CVE-2017-13322 can be exploited without user interaction, making it a notable security concern.
What is the potential impact of CVE-2017-13322 on users?
The potential impact of CVE-2017-13322 includes the inability to access emergency services, leading to significant consequences during critical situations.