CVE-2016-0827: Integer Overflow
Multiple integer overflows in libeffects in mediaserver in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49H, and 6.x before 2016-03-01 allow attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, related to EffectBundle.cpp and EffectReverb.cpp, aka internal bug 26347509.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-0827?
CVE-2016-0827 is rated as a high severity vulnerability due to potential privilege escalation risks.
How do I fix CVE-2016-0827?
To mitigate CVE-2016-0827, update your Android device to the latest version that addresses this vulnerability.
Which versions of Android are affected by CVE-2016-0827?
CVE-2016-0827 affects Android versions 4.0 through 6.0.1 before the March 2016 security patch.
What types of attacks are possible with CVE-2016-0827?
Exploitation of CVE-2016-0827 could allow an attacker to gain elevated privileges through a crafted application.
Can CVE-2016-0827 be exploited remotely?
CVE-2016-0827 requires a local application to be installed for exploitation, so remote exploitation is not possible.