Vulnerability Description
The Qualcomm buspm driver in Android before 2016-05-01 on Nexus 5X, 6, and 6P devices allows attackers to gain privileges via a crafted application, aka internal bug 26354602.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Nexus 5X | - | |
| Nexus 6 | - | |
| Nexus 6P | - | |
| Android | <= 6.0.1 |
Related Weaknesses (CWE)
References
- http://source.android.com/security/bulletin/2016-05-01.htmlPatchVendor Advisory
- https://www.codeaurora.org/issues-tsc-tspp2-and-buspm-drivers-cve-2015-0573-cve-PatchThird Party AdvisoryVDB Entry
- http://source.android.com/security/bulletin/2016-05-01.htmlPatchVendor Advisory
- https://www.codeaurora.org/issues-tsc-tspp2-and-buspm-drivers-cve-2015-0573-cve-PatchThird Party AdvisoryVDB Entry
FAQ
What is CVE-2016-2441?
CVE-2016-2441 is a vulnerability with a CVSS score of 7.0 (HIGH). The Qualcomm buspm driver in Android before 2016-05-01 on Nexus 5X, 6, and 6P devices allows attackers to gain privileges via a crafted application, aka internal bug 26354602.
How severe is CVE-2016-2441?
CVE-2016-2441 has been rated HIGH with a CVSS base score of 7.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2016-2441?
Check the references section above for vendor advisories and patch information. Affected products include: Google Nexus 5X, Google Nexus 6, Google Nexus 6P, Google Android.