CVE-2016-6768

A remote code execution vulnerability in the Framesequence library could enable an attacker using a specially crafted file to execute arbitrary code in the context of an unprivileged process. This issue is rated as High due to the possibility of remote code execution in an application that uses the Framesequence library. Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7.0. Android ID: A-31631842.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:google:android:5.0:*:*:*:*:*:*:*
cpe:2.3:o:google:android:5.0.1:*:*:*:*:*:*:*
cpe:2.3:o:google:android:5.0.2:*:*:*:*:*:*:*
cpe:2.3:o:google:android:5.1:*:*:*:*:*:*:*
cpe:2.3:o:google:android:5.1.0:*:*:*:*:*:*:*
cpe:2.3:o:google:android:5.1.1:*:*:*:*:*:*:*
cpe:2.3:o:google:android:6.0:*:*:*:*:*:*:*
cpe:2.3:o:google:android:6.0.1:*:*:*:*:*:*:*
cpe:2.3:o:google:android:7.0:*:*:*:*:*:*:*

History

21 Nov 2024, 02:56

Type Values Removed Values Added
References () http://www.securityfocus.com/bid/94704 - Third Party Advisory, VDB Entry () http://www.securityfocus.com/bid/94704 - Third Party Advisory, VDB Entry
References () https://source.android.com/security/bulletin/2016-12-01.html - Vendor Advisory () https://source.android.com/security/bulletin/2016-12-01.html - Vendor Advisory

Information

Published : 2017-01-12 15:59

Updated : 2024-11-21 02:56


NVD link : CVE-2016-6768

Mitre link : CVE-2016-6768

CVE.ORG link : CVE-2016-6768


JSON object : View

Products Affected

google

  • android
CWE
CWE-284

Improper Access Control