PT-2016-3261 · Qualcomm+1 · Qualcomm Sound Codec Driver+1

Seven Shen

·

Published

2016-12-29

·

Updated

2018-05-04

·

CVE-2016-10231

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Android kernel
Description The issue is related to an elevation of privilege vulnerability in the Qualcomm sound codec driver, which is associated with insufficient access control. This could allow a remote attacker to elevate their privileges and execute arbitrary code using a specially crafted application.
Recommendations For Android kernel, consider restricting access to the Qualcomm sound codec driver until a patch is available. As a temporary workaround, avoid using the Qualcomm sound codec driver in sensitive operations to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2018-00727
CVE-2016-10231

Affected Products

Android Kernel
Qualcomm Sound Codec Driver