CVE-2016-2060 PUBLISHED CVSS 7.800000190734863 HIGH

server/TetherController.cpp in the tethering controller in netd, as distributed with Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, does not properly validate upstream interface names, which allows attackers to bypass intended access restrictions via a crafted application.

EPSS 0.04% · 13.5th percentile

Risk Scores

CVSS v3.0
7.800000190734863
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
0.04%
13.5th percentile

Affected Products

VendorProductVersions
googleandroid0
n/an/an/a

Timeline

References

Open in Interactive Console →