VDB
CVE-2016-8462
CVE-2016-8462
PUBLISHED
CVSS 5.5 MEDIUM
An information disclosure vulnerability in the bootloader could enable a local attacker to access data outside of its permission level. This issue is rated as High because it could be used to access sensitive data. Product: Android. Versions: N/A. Android ID: A-32510383.
EPSS 0.06% · 19.2th percentile
Risk Scores
CVSS 3.0
5.5
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
EPSS Score
0.06%
19.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Google Inc. | Android | * |
| android | 0 |
Exploit Intelligence
- This app checks if you're vulnerable to CVE-2016-8467 and/or if your bootmode property has been tampered with. (github-poc)
- This app checks if you're vulnerable to CVE-2016-8467 and/or if your bootmode property has been tampered with. (github-poc)
- This app checks if you're vulnerable to CVE-2016-8467 and/or if your bootmode property has been tampered with. (github-poc)
- This app checks if you're vulnerable to CVE-2016-8467 and/or if your bootmode property has been tampered with. (github-poc)
- Pixel bootlaoder exploit for reading flash storage (github-poc)
- Pixel bootlaoder exploit for reading flash storage (github-poc)
- Pixel bootlaoder exploit for reading flash storage (github-poc)
- Pixel bootlaoder exploit for reading flash storage (github-poc)
- PoC for CVE-2016-5345 (github-poc)
- PoC for CVE-2016-5345 (github-poc)
…and 18 more exploits
Timeline
- Jan 5, 2017 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- Jul 12, 2022 EPSS Score
- Sep 3, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 2, 2023 EPSS Score
- May 25, 2023 EPSS Score
- Jul 16, 2023 EPSS Score
- Oct 29, 2023 EPSS Score
References
- https://source.android.com/security/bulletin/2017-01-01.html#security-vulnerability-summary advisory
- https://securityresear.ch/2017/01/04/fastboot-oem-sha1sum/ url
- https://source.android.com/security/bulletin/2017-01-01.html url
- https://github.com/CunningLogic/PixelDump_CVE-2016-8462 url
- 95237 vdb
- https://nvd.nist.gov/vuln/detail/CVE-2016-8462 advisory
- https://securityresear.ch/2017/01/04/fastboot-oem-sha1sum url