CVE-2017-13151
high
CVSS v3
8.8
CVSS v2
9.3
VIR risk
8.8
Description
A remote code execution vulnerability in the Android media framework (libmpeg2). Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID A-63874456.
Predictions
Exploit likelihood
92%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: security@android.com — https://source.android.com/security/bulletin/2017-12-01
References
CWEs
CWE-682
Verify integrity in audit chain (admin only). AS-IS.