CVE-2017-0331 is an elevation of privilege vulnerability in the NVIDIA video driver affecting Android devices running Kernel 3.10. A local malicious application could exploit this to execute arbitrary code within the kernel's context. Rated Critical with a CVSS score of 7.8 (HIGH), this vulnerability has a low attack complexity and does not require user interaction, allowing for potential permanent device compromise. The impact includes high confidentiality, integrity, and availability risks, possibly necessitating an operating system reflash. There is currently no evidence of active exploitation, and no public exploit code is available in Metasploit, Nuclei, or ExploitDB. Community discussion and media coverage for this CVE are minimal, indicating low public awareness.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 7.1.1CPE matchmatch criteria | cpe:2.3:o:google:android:*:*:*:*:*:*:*:* | ||
3.10CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:3.10:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.