CVE-2016-5346: Infoleak
An Information Disclosure vulnerability exists in the Google Pixel/Pixel SL Qualcomm Avtimer Driver due to a NULL pointer dereference when processing an accept system call by the user process on AFMSMIPC sockets, which could let a local malicious user obtain sensitive information (Android Bug ID A-32551280).
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2016-5346?
CVE-2016-5346 is classified as an information disclosure vulnerability.
How do I fix CVE-2016-5346?
Fixing CVE-2016-5346 involves updating the Google Pixel or Pixel XL device to a secure version of Android beyond 7.0.
Which devices are affected by CVE-2016-5346?
CVE-2016-5346 affects Google Pixel and Google Pixel XL devices running Android versions up to 7.0.
Can a remote attacker exploit CVE-2016-5346?
No, CVE-2016-5346 requires local access for exploitation by a malicious user.
What type of information could be disclosed due to CVE-2016-5346?
CVE-2016-5346 can potentially allow a local user to obtain sensitive information from the affected system.