CVE-2016-10237
published 2017-05-16CVE-2016-10237: If shared content protection memory were passed as the secure camera memory buffer by the HLOS to a trusted application (TA) in all Android releases from CAF…
PriorityP433high7.8CVSS 3.0
AVLACLPRNUIRSUCHIHAH
EPSS
0.56%
42.5th percentile
If shared content protection memory were passed as the secure camera memory buffer by the HLOS to a trusted application (TA) in all Android releases from CAF using the Linux kernel, the TA would not detect an issue and it would be treated as secure memory.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | — | — | |
| qualcomm_inc | all_qualcomm_products | — | — |
CVSS provenance
nvdv3.07.8HIGHCVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Android
CVE-2016-10237: Android Security Bulletin 2017-04-01
CVE: CVE-2016-10237
Severity: CRITICAL
References: A-31628601**
QC-CR#1046751
vendor_android·2017-04-01·CVSS 7.8
CVE-2016-10237 [HIGH] CVE-2016-10237: Android Security Bulletin 2017-04-01
CVE: CVE-2016-10237
Severity: CRITICAL
References: A-31628601**
QC-CR#1046751
Android Security Bulletin 2017-04-01
CVE: CVE-2016-10237
Severity: CRITICAL
References: A-31628601**
QC-CR#1046751
GHSA
GHSA-cc87-pxwp-pg8r: If shared content protection memory were passed as the secure camera memory buffer by the HLOS to a trusted application (TA) in all Android releases f
ghsa_unreviewed·2022-05-17
CVE-2016-10237 [HIGH] CWE-284 GHSA-cc87-pxwp-pg8r: If shared content protection memory were passed as the secure camera memory buffer by the HLOS to a trusted application (TA) in all Android releases f
If shared content protection memory were passed as the secure camera memory buffer by the HLOS to a trusted application (TA) in all Android releases from CAF using the Linux kernel, the TA would not detect an issue and it would be treated as secure memory.
No detection rules found.
No public exploits indexed.
2017-05-16
Published