VDB
CVE-2016-3882
CVE-2016-3882
PUBLISHED
CVSS 6.099999904632568 MEDIUM
Off-by-one error in server/wifi/anqp/VenueNameElement.java in Wi-Fi in Android 6.x before 2016-10-01 and 7.0 before 2016-10-01 allows remote attackers to cause a denial of service (reboot) via an access point that provides a crafted (1) Venue Group or (2) Venue Type value, aka internal bug 29464811.
EPSS 0.21% · 43.3th percentile
Risk Scores
CVSS 2.0
6.099999904632568
EPSS Score
0.21%
43.3th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| android | 6.0, 6.0.1, 7.0 |
Exploit Intelligence
- CVE-2016-7117 (github-poc)
- CVE-2016-7117 (github-poc)
- CVE-2016-7117 (github-poc)
- CVE-2016-7117 (github-poc)
- global rate-limiting in Linux (CVE-2016-5696) scanner (github-poc)
- global rate-limiting in Linux (CVE-2016-5696) scanner (github-poc)
- global rate-limiting in Linux (CVE-2016-5696) scanner (github-poc)
- global rate-limiting in Linux (CVE-2016-5696) scanner (github-poc)
- Daemon to randomize tcp_challenge_ack_limit to prevent side channel attacks CVE-2016-5696 (github-poc)
- Daemon to randomize tcp_challenge_ack_limit to prevent side channel attacks CVE-2016-5696 (github-poc)
…and 17 more exploits
Timeline
- Oct 4, 2016 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 3, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Feb 8, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 2, 2023 EPSS Score
- May 25, 2023 EPSS Score
References
- https://source.android.com/security/bulletin/2016-10-01.html advisory
- 93295 vdb
- http://source.android.com/security/bulletin/2016-10-01.html url
- https://android.googlesource.com/platform/frameworks/opt/net/wifi/+/35a86eef3c0eef760f7e61c52a343327ba601630 url
- https://nvd.nist.gov/vuln/detail/CVE-2016-3882 advisory