CVE-2017-0850
MEDIUMAndroid 7.0-7.1.2 - Information Disclosure in Media Framework
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2017-0850. PoCs published by codecat007.
AI-analyzed exploit summary The repository contains a detailed AddressSanitizer (ASAN) log demonstrating a heap-buffer-overflow vulnerability in the Android Stagefright library (CVE-2017-0850). The log shows a crash triggered by a crafted MP4 file, with stack traces pointing to memory corruption in libstagefright.so.
Description
An information disclosure vulnerability in the Android media framework (libstagefright). Product: Android. Versions: 7.0, 7.1.1, 7.1.2. Android ID: A-64836941.
Exploits (1)
The repository contains a detailed AddressSanitizer (ASAN) log demonstrating a heap-buffer-overflow vulnerability in the Android Stagefright library (CVE-2017-0850). The log shows a crash triggered by a crafted MP4 file, with stack traces pointing to memory corruption in libstagefright.so.
References (1)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N