First published: Tue Aug 30 2016(Updated: )
Multiple integer overflows in the MDSS driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, allow attackers to cause a denial of service or possibly have unspecified other impact via a large size value, related to mdss_compat_utils.c, mdss_fb.c, and mdss_rotator.c.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Android | ||
Android | <=7.0 | |
Linux kernel | >=3.0<=3.19.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-5344 has a severity rating that indicates potential denial of service vulnerabilities affecting Linux kernel versions from 3.0 to 3.19.8.
To fix CVE-2016-5344, update the Linux kernel to a version beyond 3.19.8 or upgrade your Android device to a version higher than 7.0.
CVE-2016-5344 affects devices running Android versions up to and including 7.0 and Linux kernel versions from 3.0 to 3.19.8.
CVE-2016-5344 can potentially enable attackers to cause a denial of service or have unspecified other impacts on the affected devices.
CVE-2016-5344 was disclosed as part of the security bulletin on October 1, 2016.