CVE-2016-10440: Critical severity Google Android vulnerability
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 425, SD 430, SD 450, SD 625, and SD 650/52, there is improper access control to a bus.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Android on Qualcomm Snapdragon Mobile SD 425, SD 430, SD 450, SD 625, and SD 650/52to a version that resolves this vulnerability.Fixed in 2018-04-05
Event History
Frequently Asked Questions
What is the severity of CVE-2016-10440?
CVE-2016-10440 is rated as a high severity vulnerability due to improper access control.
How do I fix CVE-2016-10440?
To fix CVE-2016-10440, update your Android device to the April 2018 security patch or later.
Which devices are affected by CVE-2016-10440?
CVE-2016-10440 affects devices using Qualcomm Snapdragon SD 425, SD 430, SD 450, SD 625, and SD 650/652 chipsets.
What vulnerabilities does CVE-2016-10440 introduce?
CVE-2016-10440 can potentially allow unauthorized access to internal components of affected Qualcomm chipsets.
When was CVE-2016-10440 disclosed?
CVE-2016-10440 was disclosed in April 2018 with the release of security patches addressing the vulnerability.