An information disclosure vulnerability in the kernel UVC driver could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-33300353.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
https://usn.ubuntu.com/3674-1/ | vendor advisory |
https://source.android.com/security/bulletin/2017-05-01 | patch vendor advisory |
https://usn.ubuntu.com/3674-2/ | vendor advisory |
http://www.securityfocus.com/bid/98205 | vdb entry third party advisory |