6.8
CVSSv2

CVE-2017-0554

Published: 07/04/2017 Updated: 03/10/2019
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

An elevation of privilege vulnerability in the Telephony component could enable a local malicious application to access capabilities outside of its permission levels. This issue is rated as Moderate because it could be used to gain access to elevated capabilities, which are not normally accessible to a third-party application. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0, 7.1.1. Android ID: A-33815946.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

google android 5.0

google android 5.0.1

google android 5.0.2

google android 4.0.3

google android 4.0.4

google android 4.3.1

google android 4.4

google android 6.0

google android 6.0.1

google android 4.0.1

google android 4.0.2

google android 4.2.2

google android 4.3

google android 7.0

google android 7.1.0

google android 5.1.1

google android 4.0

google android 4.2

google android 4.2.1

google android 4.4.3

google android 4.4.4

google android 7.1.1

google android 5.1

google android 5.1.0

google android 4.1

google android 4.1.2

google android 4.4.1

google android 4.4.2

Github Repositories

Android Tethering Provisioning Check Bypass (CVE-2017-0554)

Tethr Android Tethering Provisioning Check Bypass (CVE-2017-0554) This is the repository for the proof of concept Tethr app which demonstrates CVE-2017-0554 to bypass the tether provisioning check on Android prior to version 712 Informational Blog Post Download Tethr Demo Video