CVE-2017-0635
published 2017-05-12CVE-2017-0635: A remote denial of service vulnerability in HevcUtils.cpp in libstagefright in Mediaserver could enable an attacker to use a specially crafted file to cause a…
PriorityP419medium5.5CVSS 3.0
AVLACLPRNUIRSUCNINAH
EPSS
0.46%
37.0th percentile
A remote denial of service vulnerability in HevcUtils.cpp in libstagefright in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot. This issue is rated as Low due to details specific to the vulnerability. Product: Android. Versions: 7.0, 7.1.1, 7.1.2. Android ID: A-35467107.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| android | — | — | |
| google_inc | android | — | — |
| google_inc | android | — | — |
| google_inc | android | — | — |
CVSS provenance
nvdv3.05.5MEDIUMCVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
nvdv2.07.1HIGHAV:N/AC:M/Au:N/C:N/I:N/A:C
osv5.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-934f-78hg-4m96: A remote denial of service vulnerability in HevcUtils
ghsa_unreviewed·2022-05-13
CVE-2017-0635 [HIGH] CWE-476 GHSA-934f-78hg-4m96: A remote denial of service vulnerability in HevcUtils
A remote denial of service vulnerability in HevcUtils.cpp in libstagefright in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot. This issue is rated as Low due to details specific to the vulnerability. Product: Android. Versions: 7.0, 7.1.1, 7.1.2. Android ID: A-35467107.
OSV
CVE-2017-0635: A remote denial of service vulnerability in HevcUtils
osv·2017-05-12·CVSS 5.5
CVE-2017-0635 [MEDIUM] CVE-2017-0635: A remote denial of service vulnerability in HevcUtils
A remote denial of service vulnerability in HevcUtils.cpp in libstagefright in Mediaserver could enable an attacker to use a specially crafted file to cause a device hang or reboot. This issue is rated as Low due to details specific to the vulnerability. Product: Android. Versions: 7.0, 7.1.1, 7.1.2. Android ID: A-35467107.
Android
CVE-2017-0635: Android Security Bulletin 2017-05-01
CVE: CVE-2017-0635
Severity: LOW
Affected AOSP versions: 7
vendor_android·2017-05-01·CVSS 5.5
CVE-2017-0635 [MEDIUM] CVE-2017-0635: Android Security Bulletin 2017-05-01
CVE: CVE-2017-0635
Severity: LOW
Affected AOSP versions: 7
Android Security Bulletin 2017-05-01
CVE: CVE-2017-0635
Severity: LOW
Affected AOSP versions: 7.0, 7.1.1, 7.1.2
References: A-35467107
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://android.googlesource.com/platform/frameworks/av/+/523f6b49c1a2289161f40cf9fe80b92e592e9441https://source.android.com/security/bulletin/2017-05-01https://android.googlesource.com/platform/frameworks/av/+/523f6b49c1a2289161f40cf9fe80b92e592e9441https://source.android.com/security/bulletin/2017-05-01
2017-05-12
Published