CVE-2017-13165
published 2017-12-06CVE-2017-13165: An elevation of privilege vulnerability in the kernel file system. Product: Android. Versions: Android kernel. Android ID A-31269937.
PriorityP423medium5.3CVSS 3.1
AVLACLPRLUINSUCLILAL
EPSS
0.14%
3.6th percentile
An elevation of privilege vulnerability in the kernel file system. Product: Android. Versions: Android kernel. Android ID A-31269937.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| google_inc | android | — | — |
CVSS provenance
nvdv3.15.3MEDIUMCVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
nvdv3.07.8HIGHCVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.04.6MEDIUMAV:L/AC:L/Au:N/C:P/I:P/A:P
osv7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Google Android Kernel File System access control (Nessus ID 220693)
vuldb·2026-05-29·CVSS 5.3
CVE-2017-13165 [MEDIUM] Google Android Kernel File System access control (Nessus ID 220693)
A vulnerability categorized as critical has been discovered in Google Android. Affected by this vulnerability is an unknown functionality of the component Kernel File System. The manipulation results in improper access controls.
This vulnerability is identified as CVE-2017-13165. The attack is only possible with local access. There is not any exploit available.
It is best practice to apply a patch to resolve this issue.
GHSA
GHSA-wwq3-f6p2-899r: An elevation of privilege vulnerability in the kernel file system
ghsa_unreviewed·2022-05-13
CVE-2017-13165 [HIGH] GHSA-wwq3-f6p2-899r: An elevation of privilege vulnerability in the kernel file system
An elevation of privilege vulnerability in the kernel file system. Product: Android. Versions: Android kernel. Android ID A-31269937.
OSV
CVE-2017-13165: An elevation of privilege vulnerability in the kernel file system
osv·2017-12-06·CVSS 7.8
CVE-2017-13165 [HIGH] CVE-2017-13165: An elevation of privilege vulnerability in the kernel file system
An elevation of privilege vulnerability in the kernel file system. Product: Android. Versions: Android kernel. Android ID A-31269937.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2017-12-06
Published