VDB
CVE-2017-0435
CVE-2017-0435
PUBLISHED
CVSS 7 HIGH
An elevation of privilege vulnerability in the Qualcomm sound driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-31906657. References: QC-CR#1078000.
EPSS 0.06% · 19.7th percentile
Risk Scores
CVSS 3.0
7
CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
0.06%
19.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| android | 0 | |
| linux | linux_kernel | 3.10, 3.18 |
| Google Inc. | Android | Kernel-3.18, * |
Exploit Intelligence
- CVE-2017-0411 PoC refered p0 (github-poc)
- CVE-2017-0411 PoC refered p0 (github-poc)
- CVE-2017-0411 PoC refered p0 (github-poc)
- CVE-2017-0411 PoC refered p0 (github-poc)
- 1037798 (circl)
- 96053 (circl)
- https://source.android.com/security/bulletin/2017-02-01.html (circl)
Timeline
- Feb 7, 2017 CVE Published
- Apr 14, 2021 EPSS Score
- Jun 23, 2021 EPSS Score
- Aug 24, 2021 EPSS Score
- Oct 26, 2021 EPSS Score
- Dec 27, 2021 EPSS Score
- Feb 4, 2022 EPSS Score
- Feb 28, 2022 EPSS Score
- May 2, 2022 EPSS Score
- Sep 5, 2022 EPSS Score
- Nov 6, 2022 EPSS Score
- Jan 8, 2023 EPSS Score