An information disclosure vulnerability in kernel components including the ION subsystem, Binder, USB driver and networking subsystem could enable a local malicious application to access data outside of its permission levels. This issue is rated as Moderate because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10, Kernel-3.18. Android ID: A-31651010.
References
Link | Resource |
---|---|
https://source.android.com/security/bulletin/2016-12-01.html | Vendor Advisory |
http://www.securityfocus.com/bid/94686 | Third Party Advisory VDB Entry |
http://www.debian.org/security/2017/dsa-3791 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2017-01-12 07:59
Updated : 2017-11-03 18:29
NVD link : CVE-2016-8405
Mitre link : CVE-2016-8405
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
linux
- linux_kernel