Oval Definition:oval:com.ubuntu.xenial:def:201624160000000
Revision Date:2016-04-18Version:1
Title:CVE-2016-2416 on Ubuntu 16.04 LTS (xenial) - medium.
Description:libs/gui/BufferQueueConsumer.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 does not check for the android.permission.DUMP permission, which allows attackers to obtain sensitive information, and consequently bypass an unspecified protection mechanism, via a dump request, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 27046057.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2016-2416
Platform(s):Ubuntu 16.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 16.04 LTS (xenial) is installed.
  • AND android: while related to the CVE in some way, a decision has been made to ignore this issue (note: 'abandoned').
  • BACK