CVE-2016-8453: High severity android vulnerability
An elevation of privilege vulnerability in the Broadcom Wi-Fi driver could enable a local malicious application to execute arbitrary code within the context of the kernel. This issue is rated as High because it first requires compromising a privileged process. Product: Android. Versions: Kernel-3.10. Android ID: A-24739315. References: B-RB#73392.
Affected Software
Event History
Frequently Asked Questions
What access does an attacker need to exploit this issue?
Exploitation is local and requires user interaction. The issue is described as first requiring compromise of a privileged process before a malicious application can execute code in the kernel context.
What is the potential impact after successful exploitation?
A successful exploit could allow arbitrary code execution in the kernel context, resulting in complete compromise of confidentiality, integrity, and availability.
Which software is identified as affected?
The affected product is Android, with Kernel-3.10 identified in the available version information. The vulnerability is in the Broadcom Wi-Fi driver.