CVE-2017-8239: Google Android

Medium severity, CVSS 5.5. EPSS: 0.4% chance of exploitation in the next 30 days.

In all Android releases from CAF using the Linux kernel, userspace-controlled parameters for flash initialization are not sanitized potentially leading to exposure of kernel memory.

Affected products

Published 2017-06-13. Last modified 2026-06-17.