ZeroHour

CVE-2016-10239

CVSS 3.0
7.8 high
EPSS
<1%p51
Published
()
Modified
Description

In TrustZone access control policy may potentially be bypassed in all Android releases from CAF using the Linux kernel due to improper input validation an integer overflow vulnerability leading to a buffer overflow could potentially occur and a buffer over-read vulnerability could potentially occur.

Vendors
google
Products
android
Weakness
CWE-119, CWE-190
Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.