CVE-2016-10460: Buffer Overflow
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 835, SD 845, and SD 850, vendor specific opcodes may not have any packet length validation leading to buffer over-reads.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-10460?
CVE-2016-10460 is considered a high severity vulnerability due to potential buffer over-reads.
How do I fix CVE-2016-10460?
To fix CVE-2016-10460, you should update the affected Qualcomm Snapdragon firmware to a version released after the April 2018 security patch.
Which devices are affected by CVE-2016-10460?
CVE-2016-10460 affects devices using Qualcomm Snapdragon 835, 845, and 850 chipsets with specific firmware versions prior to the April 2018 patch.
What are the potential risks of CVE-2016-10460?
The risks of CVE-2016-10460 include exposure to unauthorized information, as the vulnerability allows for buffer over-reads.
Is CVE-2016-10460 exploitable remotely?
CVE-2016-10460 may be exploitable remotely under specific circumstances due to the lack of packet length validation.