CVE-2017-0477
HIGHGoogle Android - Memory Corruption
Title source: ruleDescription
A remote code execution vulnerability in libgdx could enable an attacker using a specially crafted file to execute arbitrary code within the context of an unprivileged process. This issue is rated as High due to the possibility of remote code execution in an application that uses this library. Product: Android. Versions: 7.1.1. Android ID: A-33621647.
Exploits (1)
github
WORKING POC
8 stars
by codecat007 · cpoc
https://github.com/codecat007/cvehub/tree/main/android/securityPatch/CVE-2017-0477
References (4)
Scores
CVSS v3
7.8
EPSS
0.0032
EPSS Percentile
54.6%
Attack Vector
LOCAL
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Details
CWE
CWE-119
Status
published
Products (4)
google/android
7.0
google/android
7.1.0
google/android
7.1.1
Google Inc./Android
Android-7.1.1
Published
Mar 08, 2017
Tracked Since
Feb 18, 2026