The Backup and Restore feature in Mobotap Dolphin Browser for Android 12.0.2 suffers from an arbitrary file write vulnerability when attempting to restore browser settings from a malicious Dolphin Browser backup file. This arbitrary file write vulnerability allows an attacker to overwrite a specific executable in the Dolphin Browser's data directory with a crafted malicious executable. Every time the Dolphin Browser is launched, it will attempt to run the malicious executable from disk, thus executing the attacker's code.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-09-16T22:36:51.349Z

Reserved: 2017-12-11T00:00:00Z

Link: CVE-2017-17551

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2017-12-11T18:29:00.187

Modified: 2025-04-20T01:37:25.860

Link: CVE-2017-17551

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.