The aboot implementation in the Qualcomm components in Android before 2016-07-05 on Nexus 6P devices omits the recovery PIN feature, which has unspecified impact and attack vectors, aka Android internal bug 28822677 and Qualcomm internal bug CR804067.
References
Configurations
History
21 Nov 2024, 02:39
Type | Values Removed | Values Added |
---|---|---|
References | () http://source.android.com/security/bulletin/2016-07-01.html - Vendor Advisory | |
References | () http://www.securityfocus.com/bid/91628 - | |
References | () https://source.codeaurora.org/quic/la/kernel/lk/commit/?id=fa774e023554427ee14d7a49181e9d4afbec035e - |
Information
Published : 2016-07-11 01:59
Updated : 2024-11-21 02:39
NVD link : CVE-2015-8889
Mitre link : CVE-2015-8889
CVE.ORG link : CVE-2015-8889
JSON object : View
Products Affected
- android
CWE
CWE-264
Permissions, Privileges, and Access Controls