CVE-2016-8446Google Android vulnerability

CWE-2643 documents3 sources
Severity
7.0HIGHNVD
EPSS
0.0%
top 87.91%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 12
Latest updateMay 17

Description

An elevation of privilege vulnerability in MediaTek components, including the thermal driver and video driver, could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: N/A. Android ID: A-31747749. References: MT-ALPS02968909.

CVSS vector

CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 1.0 | Impact: 5.9

Affected Packages3 packages

NVDgoogle/android7.1.0
CVEListV5google_inc/androidn/a

Patches

🔴Vulnerability Details

1
GHSA
GHSA-mr3c-7329-m56v: An elevation of privilege vulnerability in MediaTek components, including the thermal driver and video driver, could enable a local malicious applicat2022-05-17

📋Vendor Advisories

1
Android
CVE-2016-8446: Android Security Bulletin 2017-01-01 CVE: CVE-2016-8446 Severity: HIGH References: A-31747749* MT-ALPS029689092017-01-01