CVE-2016-5341
published 2016-12-06CVE-2016-5341: The GPS component in Android before 2016-12-05 allows man-in-the-middle attackers to cause a denial of service (GPS signal-acquisition delay) via an incorrect…
PriorityP424medium5.9CVSS 3.0
AVNACHPRNUINSUCNINAH
EPSS
0.86%
55.0th percentile
The GPS component in Android before 2016-12-05 allows man-in-the-middle attackers to cause a denial of service (GPS signal-acquisition delay) via an incorrect xtra.bin or xtra2.bin file on a spoofed Qualcomm gpsonextra.net or izatcloud.net host, aka internal bug 31470303 and external bug 211602 (and AndroidID-7225554).
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | <= 7.1.0 | — | |
| android | — | — |
CVSS provenance
nvdv3.05.9MEDIUMCVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.07.1HIGHAV:N/AC:M/Au:N/C:N/I:N/A:C
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-r473-8j89-p54x: The GPS component in Android before 2016-12-05 allows man-in-the-middle attackers to cause a denial of service (GPS signal-acquisition delay) via an i
ghsa_unreviewed·2022-05-17
CVE-2016-5341 [HIGH] CWE-284 GHSA-r473-8j89-p54x: The GPS component in Android before 2016-12-05 allows man-in-the-middle attackers to cause a denial of service (GPS signal-acquisition delay) via an i
The GPS component in Android before 2016-12-05 allows man-in-the-middle attackers to cause a denial of service (GPS signal-acquisition delay) via an incorrect xtra.bin or xtra2.bin file on a spoofed Qualcomm gpsonextra.net or izatcloud.net host, aka internal bug 31470303 and external bug 211602 (and AndroidID-7225554).
Android
CVE-2016-5341: Android Security Bulletin 2016-12-01
CVE: CVE-2016-5341
Severity: HIGH
References: A-31470303*
vendor_android·2016-12-01·CVSS 5.9
CVE-2016-5341 [MEDIUM] CVE-2016-5341: Android Security Bulletin 2016-12-01
CVE: CVE-2016-5341
Severity: HIGH
References: A-31470303*
Android Security Bulletin 2016-12-01
CVE: CVE-2016-5341
Severity: HIGH
References: A-31470303*
No detection rules found.
No public exploits indexed.
http://source.android.com/security/bulletin/2016-12-01.htmlhttp://www.securityfocus.com/bid/94689https://source.android.com/security/bulletin/pixel/2017-12-01https://wwws.nightwatchcybersecurity.com/2016/12/05/cve-2016-5341/http://source.android.com/security/bulletin/2016-12-01.htmlhttp://www.securityfocus.com/bid/94689https://source.android.com/security/bulletin/pixel/2017-12-01https://wwws.nightwatchcybersecurity.com/2016/12/05/cve-2016-5341/
2016-12-06
Published