CVE-2017-0405
CVE-2017-0405
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 1.8%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
08 Feb 2017Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
A remote code execution vulnerability in Surfaceflinger could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing. This issue is rated as Critical due to the possibility of remote code execution within the context of the Surfaceflinger process. Product: Android. Versions: 7.0, 7.1.1. Android ID: A-31960359.
Affected products
Google Inc. · AndroidWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →