VDB

CVE-2016-3850

CVE-2016-3850 PUBLISHED CVSS 7.300000190734863 HIGH

Integer overflow in app/aboot/aboot.c in the Qualcomm bootloader in Android before 2016-08-05 on Nexus 5, 5X, 6P, and 7 (2013) devices allows attackers to gain privileges via a crafted header field in a boot image, aka Android internal bug 27917291 and Qualcomm internal bug CR945164.

EPSS 0.20% · 9.2th percentile

Risk Scores

CVSS 3.0
7.300000190734863
CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:H/I:H/A:H
EPSS Score
0.20%
9.2th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSandroid0, 20150818-1500-0ubuntu2, *

Timeline

  • Aug 1, 2016 CVE Published
  • Feb 4, 2022 EPSS Score
  • Mar 29, 2022 EPSS Score
  • May 21, 2022 EPSS Score
  • Jul 13, 2022 EPSS Score
  • Sep 5, 2022 EPSS Score
  • Oct 28, 2022 EPSS Score
  • Dec 20, 2022 EPSS Score
  • Feb 11, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Apr 5, 2023 EPSS Score
  • May 28, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›