Vulnerability Description
Unauthenticated messages processed by the UE. Certain NAS messages are processed when no EPS security context exists in the UE. Product: Android. Versions: Kernel 3.18. Android ID: A-31548486. References: QC-CR#877705.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linux | Linux Kernel | 3.18 |
Related Weaknesses (CWE)
References
- http://www.securityfocus.com/bid/95227
- https://source.android.com/security/bulletin/2017-01-01.htmlVendor Advisory
- http://www.securityfocus.com/bid/95227
- https://source.android.com/security/bulletin/2017-01-01.htmlVendor Advisory
FAQ
What is CVE-2016-8398?
CVE-2016-8398 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Unauthenticated messages processed by the UE. Certain NAS messages are processed when no EPS security context exists in the UE. Product: Android. Versions: Kernel 3.18. Android ID: A-31548486. Referen...
How severe is CVE-2016-8398?
CVE-2016-8398 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2016-8398?
Check the references section above for vendor advisories and patch information. Affected products include: Linux Linux Kernel.