CVE-2017-0638: Google Android
High severity, CVSS 7.8. EPSS: 1% chance of exploitation in the next 30 days.
A remote code execution vulnerability in System UI component could enable an attacker using a specially crafted file to execute arbitrary code within the context of an unprivileged process. This issue is rated as High because it is a remote arbitrary code execution in an unprivileged process. Product: Android. Versions: 7.1.1, 7.1.2. Android ID: A-36368305.
Affected products
- Google Android: version 7.1.1 only; version 7.1.2 only
Published 2017-06-14. Last modified 2026-06-17.