CVE-2016-2446: High severity google nexus 9 vulnerability
Published May 9, 2016
·Updated
The NVIDIA media driver in Android before 2016-05-01 on Nexus 9 devices allows attackers to gain privileges via a crafted application, aka internal bug 27441354.
Affected Software
2 affected components
Google Nexus 9
Google Android<=6.0.1
Remediation
Patch Available
Event History
May 9, 2016
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-2446?
CVE-2016-2446 is classified as a high severity vulnerability due to its potential to allow attackers to gain elevated privileges on affected devices.
2
How do I fix CVE-2016-2446?
To fix CVE-2016-2446, ensure that your Nexus 9 device is updated to Android version 6.0.1 or later.
3
Which devices are affected by CVE-2016-2446?
CVE-2016-2446 affects Nexus 9 devices running Android version prior to 6.0.1.
4
What type of vulnerability is CVE-2016-2446?
CVE-2016-2446 is a privilege escalation vulnerability in the NVIDIA media driver on certain Android devices.
5
Can CVE-2016-2446 be exploited remotely?
CVE-2016-2446 requires local access to the device through a crafted application, so it is not considered a remotely exploitable vulnerability.