PT-2016-1578 · Google · Android
Published
2016-03-12
·
Updated
2016-11-28
·
CVE-2016-0830
CVSS v3.1
6.5
Medium
| Vector | AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Android versions prior to 2016-03-01 patchday
Description
The issue is caused by a buffer overflow in the btif config.c function of the Bluetooth component in the Android operating system. This can be exploited to cause a denial of service, resulting in memory corruption and a persistent daemon crash, by triggering a large number of configuration entries and exceeding the maximum size of a configuration file.
Recommendations
For Android versions prior to 2016-03-01 patchday, apply the patch released on or after 2016-03-01 to resolve the issue.
Fix
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Android