CVE-2017-11025 describes a memory corruption vulnerability within the audio_effects_shared_ioctl() function in Android for MSM, Firefox OS for MSM, and QRD Android, affecting all Android releases from CAF utilizing the Linux kernel. This flaw, rated 7.0 HIGH on CVSS, stems from a race condition that could lead to high impact on confidentiality, integrity, and availability, requiring low privileges and high attack complexity. Despite its severity, there is no evidence of active exploitation, publicly available exploit code, or significant community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:o:google:android:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.4 InfoSec Media, 0.1 Vendor Blog, and 0.0 Security Researcher mentions.