~ubuntu-security/ubuntu-cve-tracker/master

« back to all changes in this revision

Viewing changes to retired/CVE-2017-0538

  • Committer: Steve Beattie
  • Date: 2019-02-19 06:18:27 UTC
  • Revision ID: sbeattie@ubuntu.com-20190219061827-oh57fzcfc1u9dlfk
The ubuntu-cve-tracker project has been converted to git.

Please use 'git clone https://git.launchpad.net/ubuntu-cve-tracker' to
get the converted tree.

Show diffs side-by-side

added added

removed removed

Lines of Context:
1
 
Candidate: CVE-2017-0538
2
 
PublicDate: 2017-04-07
3
 
References:
4
 
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-0538
5
 
 https://android.googlesource.com/platform/external/libavc/+/494561291a503840f385fbcd11d9bc5f4dc502b8
6
 
 https://source.android.com/security/bulletin/2017-04-01
7
 
Description:
8
 
 A remote code execution vulnerability in libavc in Mediaserver could enable
9
 
 an attacker using a specially crafted file to cause memory corruption
10
 
 during media file and data processing. This issue is rated as Critical due
11
 
 to the possibility of remote code execution within the context of the
12
 
 Mediaserver process. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1.
13
 
 Android ID: A-33641588.
14
 
Ubuntu-Description:
15
 
Notes:
16
 
 sarnold> See CVE-2015-1538 for information on ubuntu use of android tools
17
 
Bugs:
18
 
Priority: medium
19
 
Discovered-by:
20
 
Assigned-to:
21
 
 
22
 
Patches_android:
23
 
upstream_android: needs-triage
24
 
precise_android: DNE
25
 
precise/esm_android: DNE
26
 
trusty_android: ignored (abandoned)
27
 
vivid/stable-phone-overlay_android: ignored (reached end-of-life)
28
 
vivid/ubuntu-core_android: DNE
29
 
xenial_android: ignored (abandoned)
30
 
yakkety_android: ignored (reached end-of-life)
31
 
zesty_android: ignored (reached end-of-life)
32
 
artful_android: DNE
33
 
bionic_android: DNE
34
 
devel_android: DNE
35