PT-2016-3261 · Qualcomm+1 · Qualcomm Sound Codec Driver+1
Seven Shen
·
Publicado
2016-12-29
·
Atualizado
2018-05-04
·
CVE-2016-10231
CVSS v2.0
9.3
Alta
| Vetor | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Android kernel
Description
The issue is related to an elevation of privilege vulnerability in the Qualcomm sound codec driver, which is associated with insufficient access control. This could allow a remote attacker to elevate their privileges and execute arbitrary code using a specially crafted application.
Recommendations
For Android kernel, consider restricting access to the Qualcomm sound codec driver until a patch is available.
As a temporary workaround, avoid using the Qualcomm sound codec driver in sensitive operations to minimize the risk of exploitation.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Android Kernel
Qualcomm Sound Codec Driver