CVE-2016-6723: Medium severity Google Android vulnerability
A denial of service vulnerability in Proxy Auto Config in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-11-01, and 7.0 before 2016-11-01 could enable a remote attacker to use a specially crafted file to cause a device hang or reboot. This issue is rated as Moderate because it requires an uncommon device configuration. Android ID: A-30100884.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-6723?
CVE-2016-6723 is rated as a Moderate severity vulnerability.
Which versions of Android are affected by CVE-2016-6723?
CVE-2016-6723 affects Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before November 1, 2016, and 7.0 before November 1, 2016.
How do I fix CVE-2016-6723?
To fix CVE-2016-6723, you should update your Android device to the latest version provided by your manufacturer.
What type of attack does CVE-2016-6723 enable?
CVE-2016-6723 enables a denial of service attack that can cause a device to hang or reboot.
Is there a workaround for CVE-2016-6723?
There are no known workarounds for CVE-2016-6723; updating the device is the recommended mitigation.