← Volver a CVEs
CVE-2017-13228
N/ADescripcion
In function ih264d_ref_idx_reordering of libavc, there is an out-of-bounds write due to modCount being defined as an unsigned character. This could lead to remote code execution with no additional execution privileges needed. User interaction is needed for exploitation. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-69478425.
Detalles CVE
Puntuacion CVSS v3.1N/A
Publicado2/12/2018
Ultima modificacion11/21/2024
Fuentenvd
Avistamientos honeypot0
Productos afectados
google:android
Debilidades (CWE)
CWE-787
Referencias
http://www.securityfocus.com/bid/102976(security@android.com)
https://source.android.com/security/bulletin/2018-02-01(security@android.com)
http://www.securityfocus.com/bid/102976(af854a3a-2127-422b-91ae-364da2661108)
https://source.android.com/security/bulletin/2018-02-01(af854a3a-2127-422b-91ae-364da2661108)
Correlaciones IOC
Sin correlaciones registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.