CVE-2016-10420: Buffer Overflow
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9650, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 425, SD 430, SD 450, SD 600, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 800, SD 808, SD 810, SD 820, SD 835, and SDX20, while playing back a .flv clip which doesn't have an inbuilt seek table, a dynamic index table access is out of bounds and leads to crash.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-10420?
The severity of CVE-2016-10420 is high with a severity value of 5.5.
Which devices are affected by CVE-2016-10420?
CVE-2016-10420 affects Android devices before 2018-04-05 or with earlier security patch levels on Qualcomm Snapdragon Mobile and Snapdragon Wear devices.
What is the vulnerability description of CVE-2016-10420?
CVE-2016-10420 is a vulnerability in Android that allows remote attackers to bypass intended access restrictions.
How can I fix CVE-2016-10420?
To fix CVE-2016-10420, update your Android device to the latest security patch level released by Google.
Where can I find more information about CVE-2016-10420?
You can find more information about CVE-2016-10420 in the references provided: http://www.securityfocus.com/bid/103671, https://source.android.com/security/bulletin/2018-04-01, https://source.android.com/docs/security/bulletin/2018-04-01/#asterisk