CVE Vulnerabilities

CVE-2016-6717

Published: Nov 25, 2016 | Modified: Mar 07, 2019
CVSS 3.x
7
HIGH
Source:
NVD
CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS 2.x
7.6 HIGH
AV:N/AC:H/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

An elevation of privilege vulnerability in Mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-11-01, and 7.0 before 2016-11-01 could enable a local malicious application to execute arbitrary code within the context of a privileged process. This issue is rated as Moderate because it first requires exploitation of a separate vulnerability. Android ID: A-31350239.

Affected Software

Name Vendor Start Version End Version
Android Google 4.0 (including) 4.4.4 (excluding)
Android Google 5.0 (including) 5.0.2 (excluding)
Android Google 5.1 (including) 5.1.1 (excluding)
Android Google 6.0 (including) 6.0.1 (including)
Android Google 7.0 (including) 7.0 (including)

References