Android Framework Phone Interface Manager Emergency Services Denial-of-Service Vulnerability
Vulnerability
A denial-of-service vulnerability has been identified in the Android framework, specifically within the Phone Interface Manager component. The issue arises from a logic error that can prevent access to emergency services, leading to a local denial-of-service condition. This vulnerability affects several Android versions, including 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, and 8.1. Notably, the vulnerability can be exploited without requiring additional execution privileges or user interaction.
Impact
Exploitation of this vulnerability can cause a local denial-of-service condition by disrupting access to emergency services.
Remediation
Users can update their devices to the May 2018 security patch level to address this vulnerability.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
