CVE Vulnerabilities

CVE-2016-2416

Published: Apr 18, 2016 | Modified: Apr 25, 2016
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

libs/gui/BufferQueueConsumer.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 does not check for the android.permission.DUMP permission, which allows attackers to obtain sensitive information, and consequently bypass an unspecified protection mechanism, via a dump request, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 27046057.

Affected Software

Name Vendor Start Version End Version
Android Google 4.0 (including) 4.0 (including)
Android Google 4.0.1 (including) 4.0.1 (including)
Android Google 4.0.2 (including) 4.0.2 (including)
Android Google 4.0.3 (including) 4.0.3 (including)
Android Google 4.0.4 (including) 4.0.4 (including)
Android Google 4.1 (including) 4.1 (including)
Android Google 4.1.2 (including) 4.1.2 (including)
Android Google 4.2 (including) 4.2 (including)
Android Google 4.2.1 (including) 4.2.1 (including)
Android Google 4.2.2 (including) 4.2.2 (including)
Android Google 4.3 (including) 4.3 (including)
Android Google 4.3.1 (including) 4.3.1 (including)
Android Google 4.4 (including) 4.4 (including)
Android Google 4.4.1 (including) 4.4.1 (including)
Android Google 4.4.2 (including) 4.4.2 (including)
Android Google 4.4.3 (including) 4.4.3 (including)
Android Google 5.0 (including) 5.0 (including)
Android Google 5.0.1 (including) 5.0.1 (including)
Android Google 5.1 (including) 5.1 (including)
Android Google 5.1.0 (including) 5.1.0 (including)
Android Google 6.0 (including) 6.0 (including)
Android Google 6.0.1 (including) 6.0.1 (including)
Android Ubuntu esm-apps/xenial *
Android Ubuntu trusty *
Android Ubuntu upstream *
Android Ubuntu vivid/stable-phone-overlay *
Android Ubuntu wily *
Android Ubuntu xenial *
Android Ubuntu yakkety *
Android Ubuntu zesty *

References