CVE-2016-5344: Integer Overflow
Multiple integer overflows in the MDSS driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allow attackers to cause a denial of service or possibly have unspecified other impact via a large size value, related to mdsscompatutils.c, mdssfb.c, and mdssrotator.c.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2016-5344?
CVE-2016-5344 has a severity rating that indicates potential denial of service vulnerabilities affecting Linux kernel versions from 3.0 to 3.19.8.
How do I fix CVE-2016-5344?
To fix CVE-2016-5344, update the Linux kernel to a version beyond 3.19.8 or upgrade your Android device to a version higher than 7.0.
Which devices are affected by CVE-2016-5344?
CVE-2016-5344 affects devices running Android versions up to and including 7.0 and Linux kernel versions from 3.0 to 3.19.8.
What type of attacks can CVE-2016-5344 enable?
CVE-2016-5344 can potentially enable attackers to cause a denial of service or have unspecified other impacts on the affected devices.
When was CVE-2016-5344 disclosed?
CVE-2016-5344 was disclosed as part of the security bulletin on October 1, 2016.