PT-2016-3133 · Google · Android

Abdsec

·

Published

2016-02-07

·

Updated

2019-03-08

·

CVE-2016-0801

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Android versions prior to 4.4.4 Android versions 5.x prior to 5.1.1 LMY49G Android versions 6.x prior to 2016-02-01
Description The issue is related to the Broadcom Wi-Fi driver in the kernel, which allows remote attackers to execute arbitrary code or cause a denial of service due to insufficient input validation. This can be achieved through crafted wireless control message packets, resulting in memory corruption.
Recommendations For Android versions prior to 4.4.4, update to version 4.4.4 or later. For Android versions 5.x prior to 5.1.1 LMY49G, update to version 5.1.1 LMY49G or later. For Android versions 6.x prior to 2016-02-01, update to a version released after 2016-02-01.

Exploit

Fix

RCE

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2017-2440
ALT-PU-2017-2441
ALT-PU-2018-2871
ALT-PU-2018-2919
BDU:2017-01325
CESA-2017_2907
CESA-2017_2911
CVE-2016-0801
DLA-1573-1
MGASA-2017-0472
RHSA-2017_2907
RHSA-2017_2911

Affected Products

Android