CVE-2017-0444
published 2017-02-08CVE-2017-0444: An elevation of privilege vulnerability in the Realtek sound driver could enable a local malicious application to execute arbitrary code within the context of…
PriorityP430high7CVSS 3.0
AVLACHPRNUIRSUCHIHAH
EPSS
1.13%
62.9th percentile
An elevation of privilege vulnerability in the Realtek sound driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10. Android ID: A-32705232.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | <= 7.1.1 | — | |
| android | — | — | |
| google_inc | android | — | — |
| linux | linux_kernel | — | — |
CVSS provenance
nvdv3.07.0HIGHCVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.07.6HIGHAV:N/AC:H/Au:N/C:C/I:C/A:C
osv7.0HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Android
CVE-2017-0444: Android Security Bulletin 2017-02-01
CVE: CVE-2017-0444
Severity: HIGH
References: A-32705232*
vendor_android·2017-02-01·CVSS 7.0
CVE-2017-0444 [HIGH] CVE-2017-0444: Android Security Bulletin 2017-02-01
CVE: CVE-2017-0444
Severity: HIGH
References: A-32705232*
Android Security Bulletin 2017-02-01
CVE: CVE-2017-0444
Severity: HIGH
References: A-32705232*
GHSA
GHSA-j37q-2wxj-jx73: An elevation of privilege vulnerability in the Realtek sound driver could enable a local malicious application to execute arbitrary code within the co
ghsa_unreviewed·2022-05-13
CVE-2017-0444 [HIGH] GHSA-j37q-2wxj-jx73: An elevation of privilege vulnerability in the Realtek sound driver could enable a local malicious application to execute arbitrary code within the co
An elevation of privilege vulnerability in the Realtek sound driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10. Android ID: A-32705232.
OSV
CVE-2017-0444: An elevation of privilege vulnerability in the Realtek sound driver could enable a local malicious application to execute arbitrary code within the co
osv·2017-02-08·CVSS 7.0
CVE-2017-0444 [HIGH] CVE-2017-0444: An elevation of privilege vulnerability in the Realtek sound driver could enable a local malicious application to execute arbitrary code within the co
An elevation of privilege vulnerability in the Realtek sound driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10. Android ID: A-32705232.
No detection rules found.
No public exploits indexed.
Fortinet
A Brief History of The Evolution of Malware | FortiGuard Labs
blogs_fortinet·2022-03-15
A Brief History of The Evolution of Malware | FortiGuard Labs
FORTIGUARD LABS THREAT RESEARCH
A Brief History of The Evolution of Malware
By Val Saengphaibul | March 15, 2022
A “computer virus” is one of the few transcendent technical terms everyone understands, including children. Regardless of socioeconomic background or age, everyone has an immediate negative connotation to that term. It is usually associated with something destructive to the technology we all rely on, whether it’s a laptop, smartphone, application, or gaming system, demonstrating how ubiquitous computers and technology have become in our daily lives. Part of the reason is that we have all been exposed to the impact of viruses, such as the flu or the common cold. And like its biological counterparts, a computer virus also replicates and can be transmitted from one host to anothe
Bugzilla
CVE-2017-2623 rpm-ostree, rpm-ostree-client: fails to check gpg package signatures when layering
bugzilla·2017-02-14·CVSS 5.3
CVE-2017-2623 [MEDIUM] CVE-2017-2623 rpm-ostree, rpm-ostree-client: fails to check gpg package signatures when layering
CVE-2017-2623 rpm-ostree, rpm-ostree-client: fails to check gpg package signatures when layering
It was found that rpm-ostree was not checking GPG signatures on packages when doing layering.
Note that for RHEL Atomic Host, this issue is of lower impact due to existing "certificate pinning" that is enabled by default. While it does not provide the same type of safety measures as GPG, it is a strong, standard baseline security practice against many threat scenarios.
Discussion:
Acknowledgments:
Name: Colin Walters (Red Hat)
---
This issue has been addressed in the following products:
RHAH for RHEL 7
Via RHSA-2017:0444 https://access.redhat.com/errata/RHSA-2017:0444
---
Mitigation:
This issue is partially mitigated on RHEL Atomic Host, where default certificate pinning ensures pro
2017-02-08
Published