CVE-2017-13156
high · 7.8An elevation of privilege vulnerability in the Android system (art). Product: Android. Versions: 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID A-64211847.
7.8
CVSS
20.5%
EPSS (exploit prob.)
97th
EPSS percentile
2017-12-06
Published
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weaknesses
CWE-434
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| android | 5.1.1 | |
| android | 6.0 | |
| android | 6.0.1 | |
| android | 7.0 | |
| android | 7.1.1 | |
| android | 7.1.2 | |
| android | 8.0 |
Check a specific version with /api/v1/cve/match.
References
- http://packetstormsecurity.com/files/155189/Android-Janus-APK-Signature-Bypass.html
- http://www.securityfocus.com/bid/102109
- https://source.android.com/security/bulletin/2017-12-01
- http://packetstormsecurity.com/files/155189/Android-Janus-APK-Signature-Bypass.html
- http://www.securityfocus.com/bid/102109
- https://source.android.com/security/bulletin/2017-12-01
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2017-13156