CVE-2017-13225 PUBLISHED CVSS 7.800000190734863 HIGH

In libMtkOmxVdec.so there is a possible heap buffer overflow. This could lead to a remote elevation of privilege enabling code execution as a privileged process with no additional execution privileges needed. User interaction is needed for exploitation. Product: Android. Versions: Android kernel. Android ID: A-38308024. References: M-ALPS03495789.

EPSS 0.20% · 42.0th percentile

Risk Scores

CVSS v3.0
7.800000190734863
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
0.20%
42.0th percentile

Affected Products

VendorProductVersions
googleandroid
Google Inc.AndroidAndroid kernel

Timeline

References

Open in Interactive Console →