UBUNTU-CVE-2017-0595
Dashboard / Vulnerabilities / UBUNTU-CVE-2017-0595
Summary:
Details: An elevation of privilege vulnerability in libstagefright in Mediaserver could enable a local malicious application to execute arbitrary code within the context of a privileged process. This issue is rated as High because it could be used to gain local access to elevated capabilities, which are not normally accessible to a third-party application. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-34705519.
References: https://ubuntu.com/security/CVE-2017-0595, https://android.googlesource.com/platform/frameworks/av/+/5443b57cc54f2e46b35246637be26a69e9f493e1, https://source.android.com/security/bulletin/2017-05-01, https://www.cve.org/CVERecord?id=CVE-2017-0595
Affected packages
Package
Name: android
Purl: pkg:deb/ubuntu/android@20160330-0939-0ubuntu1?arch=source&distro=xenial
Affected ranges
Type: ECOSYSTEM
Events:
