PT-2016-3261 · Qualcomm+1 · Qualcomm Sound Codec Driver+1
Seven Shen
·
Published
2016-12-29
·
Updated
2018-05-04
·
CVE-2016-10231
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Android kernel
Description
The issue is related to an elevation of privilege vulnerability in the Qualcomm sound codec driver, which is associated with insufficient access control. This could allow a remote attacker to elevate their privileges and execute arbitrary code using a specially crafted application.
Recommendations
For Android kernel, consider restricting access to the Qualcomm sound codec driver until a patch is available.
As a temporary workaround, avoid using the Qualcomm sound codec driver in sensitive operations to minimize the risk of exploitation.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Android Kernel
Qualcomm Sound Codec Driver