Incorrect Web Origin Determination Vulnerability in getHost() Function of UriTest.java

Incorrect Web Origin Determination Vulnerability in getHost() Function of UriTest.java

CVE-2017-13274 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

In the getHost() function of UriTest.java, there is the possibility of incorrect web origin determination. This could lead to incorrect security decisions with no additional execution privileges needed. User interaction is not needed for exploitation. Product: Android. Versions: 6.0, 6.0.1, 7.0, 7.1.1, 7.1.2, 8.0, 8.1. Android ID: A-71360761.

Learn more about our Cis Benchmark Audit For Google Android.