Android before 2016-08-05 does not properly restrict code execution in a kernel context, which allows attackers to gain privileges via a crafted application, as demonstrated by the kernel performance subsystem and the Qualcomm performance component, aka Android internal bugs 28086229 and 29119870 and Qualcomm internal bug CR1011071.
References
Configurations
History
21 Nov 2024, 02:50
Type | Values Removed | Values Added |
---|---|---|
References | () http://source.android.com/security/bulletin/2016-08-01.html - Patch, Vendor Advisory | |
References | () http://www.securityfocus.com/bid/92237 - | |
References | () http://www.securityfocus.com/bid/92250 - |
Information
Published : 2016-08-05 20:59
Updated : 2024-11-21 02:50
NVD link : CVE-2016-3843
Mitre link : CVE-2016-3843
CVE.ORG link : CVE-2016-3843
JSON object : View
Products Affected
- android
CWE
CWE-264
Permissions, Privileges, and Access Controls