CVE-2017-0477

HIGH

Google Android - Memory Corruption

Title source: rule

Description

A remote code execution vulnerability in libgdx could enable an attacker using a specially crafted file to execute arbitrary code within the context of an unprivileged process. This issue is rated as High due to the possibility of remote code execution in an application that uses this library. Product: Android. Versions: 7.1.1. Android ID: A-33621647.

Exploits (1)

github WORKING POC 8 stars
by codecat007 · cpoc
https://github.com/codecat007/cvehub/tree/main/android/securityPatch/CVE-2017-0477

Scores

CVSS v3 7.8
EPSS 0.0032
EPSS Percentile 54.6%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-119
Status published
Products (4)
google/android 7.0
google/android 7.1.0
google/android 7.1.1
Google Inc./Android Android-7.1.1
Published Mar 08, 2017
Tracked Since Feb 18, 2026