PoC Index

CVE-2017-0564

HIGH 9.3EPSS 4.2%

An elevation of privilege vulnerability in the kernel ION subsystem could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as Critical due to the possibility of a local permanent device compromise, which may require reflashing the operating system to repair the device. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-34276203.

CVSS v3.0
7.8 HIGHCVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS v2.0
9.3 HIGHAV:N/AC:M/Au:N/C:C/I:C/A:C
EPSS
4.25% chance of exploitation in the next 30 days, 90th percentile
Published
2017-04-07
Updated
2024-08-05

Proof-of-concept exploits (1)

References

Related