CVE-2016-0820
published 2016-03-12CVE-2016-0820: The MediaTek Wi-Fi kernel driver in Android 6.0.1 before 2016-03-01 allows attackers to gain privileges via a crafted application, aka internal bug 26267358.
PriorityP432high7.8CVSS 3.0
AVLACLPRNUIRSUCHIHAH
EPSS
0.52%
41.4th percentile
The MediaTek Wi-Fi kernel driver in Android 6.0.1 before 2016-03-01 allows attackers to gain privileges via a crafted application, aka internal bug 26267358.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | — | — | |
| android | — | — |
CVSS provenance
nvdv3.07.8HIGHCVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
osv7.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-2h7r-3w49-4q6m: The MediaTek Wi-Fi kernel driver in Android 6
ghsa_unreviewed·2022-05-17
CVE-2016-0820 [HIGH] GHSA-2h7r-3w49-4q6m: The MediaTek Wi-Fi kernel driver in Android 6
The MediaTek Wi-Fi kernel driver in Android 6.0.1 before 2016-03-01 allows attackers to gain privileges via a crafted application, aka internal bug 26267358.
Project0
In-the-Wild Series: Android Exploits - Project Zero
project_zero·2021-01-01·CVSS 7.8
CVE-2015-0569 [HIGH] In-the-Wild Series: Android Exploits - Project Zero
This is part 4 of a 6-part series detailing a set of vulnerabilities found by Project Zero being exploited in the wild. To read the other parts of the series, see the introduction post.
Posted by Mark Brand, Project Zero
A survey of the exploitation techniques used by a high-tier attacker against Android devices in 2020
## Introduction
After one of the Chrome exploits has been successful, there are several (quite simple) stages of payload decryption that occur. Once we've got through that, we reach a much more complex binary that is clearly the result of some engineering work. Thanks to that engineering it's very simple for us to locate and examine the exploits embedded inside! For each privilege elevation, they have a function in the .init_array which will register it into a global
OSV
CVE-2016-0820: The MediaTek Wi-Fi kernel driver in Android 6
osv·2016-03-12·CVSS 7.8
CVE-2016-0820 [HIGH] CVE-2016-0820: The MediaTek Wi-Fi kernel driver in Android 6
The MediaTek Wi-Fi kernel driver in Android 6.0.1 before 2016-03-01 allows attackers to gain privileges via a crafted application, aka internal bug 26267358.
Android
CVE-2016-0820: Android Security Bulletin 2016-03-01
CVE: CVE-2016-0820
Severity: CRITICAL
Affected AOSP versions: 6
vendor_android·2016-03-01·CVSS 7.8
CVE-2016-0820 [HIGH] CVE-2016-0820: Android Security Bulletin 2016-03-01
CVE: CVE-2016-0820
Severity: CRITICAL
Affected AOSP versions: 6
Android Security Bulletin 2016-03-01
CVE: CVE-2016-0820
Severity: CRITICAL
Affected AOSP versions: 6.0.1
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2016-03-12
Published