Candidate: CVE-2017-0817 PublicDate: 2017-10-04 01:29:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-0817 https://android.googlesource.com/platform/frameworks/av/+/d834160d9759f1098df692b34e6eeb548f9e317b https://source.android.com/security/bulletin/pixel/2017-10-01 Description: An information disclosure vulnerability in the Android media framework (libstagefright). Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0. Android ID: A-63522430. Ubuntu-Description: Notes: Bugs: Priority: untriaged Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N [7.5 HIGH] Patches_android: upstream_android: needs-triage precise/esm_android: DNE trusty_android: ignored (abandoned) trusty/esm_android: DNE (trusty was ignored [abandoned]) vivid/ubuntu-core_android: DNE xenial_android: ignored (abandoned) zesty_android: ignored (reached end-of-life) artful_android: DNE bionic_android: DNE devel_android: DNE