CVE-2016-8437Improper Input Validation in INC Android

Severity
9.8CRITICALNVD
EPSS
0.6%
top 31.99%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 12
Latest updateMay 17

Description

Improper input validation in Access Control APIs. Access control API may return memory range checking incorrectly. Product: Android. Versions: Kernel 3.18. Android ID: A-31623057. References: QC-CR#1009695.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages3 packages

CVEListV5google_inc/androidKernel-3.18

🔴Vulnerability Details

1
GHSA
GHSA-5whc-28x3-qq8h: Improper input validation in Access Control APIs2022-05-17

📋Vendor Advisories

1
Android
CVE-2016-8437: Android Security Bulletin 2017-01-01 CVE: CVE-2016-8437 Severity: HIGH References: A-31623057**2017-01-01