CVE-2016-0816: Buffer Overflow
Published Mar 12, 2016
·Updated
mediaserver in Android 6.x before 2016-03-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, related to decoder/ih264dparseislice.c and decoder/ih264dparsepslice.c, aka internal bug 25928803.
Affected Software
2 affected components
Google Android=6.0
Google Android=6.0.1
Event History
Mar 12, 2016
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-0816?
CVE-2016-0816 is classified as a critical vulnerability due to its potential for remote code execution and denial of service.
2
How do I fix CVE-2016-0816?
To mitigate CVE-2016-0816, users should update their Android devices to version 6.0.1 or later.
3
What types of attacks can exploit CVE-2016-0816?
CVE-2016-0816 can be exploited through crafted media files that cause memory corruption.
4
What versions of Android are affected by CVE-2016-0816?
CVE-2016-0816 affects Android versions 6.0 and 6.0.1.
5
What components are involved in CVE-2016-0816?
CVE-2016-0816 involves the mediaserver component and specific codec parsers in Android.