UBUNTU-CVE-2016-0811

Source
https://ubuntu.com/security/CVE-2016-0811
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2016/UBUNTU-CVE-2016-0811.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2016-0811
Upstream
  • CVE-2016-0811
Published
2016-02-07T01:59:00Z
Modified
2025-10-24T04:45:34Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N CVSS Calculator
  • Ubuntu - medium
Summary
[none]
Details

Integer overflow in the BnCrypto::onTransact function in media/libmedia/ICrypto.cpp in libmediaplayerservice in Android 6.x before 2016-02-01 allows attackers to obtain sensitive information, and consequently bypass an unspecified protection mechanism, by triggering an improper size calculation, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 25800375.

References

Affected packages

Ubuntu:16.04:LTS / android

Package

Name
android
Purl
pkg:deb/ubuntu/android@20160330-0939-0ubuntu1?arch=source&distro=xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

Other
20150818-1500-0ubuntu2
20150818-1500-0ubuntu3
20160307-0742-0ubuntu3
20160330-0939-0ubuntu1

Ecosystem specific

{
    "binaries": [
        {
            "binary_name": "android",
            "binary_version": "20160330-0939-0ubuntu1"
        },
        {
            "binary_name": "android-copyright",
            "binary_version": "20160330-0939-0ubuntu1"
        },
        {
            "binary_name": "android-emulator",
            "binary_version": "20160330-0939-0ubuntu1"
        },
        {
            "binary_name": "ubuntu-emulator-images",
            "binary_version": "20160330-0939-0ubuntu1"
        },
        {
            "binary_name": "ubuntu-emulator-runtime",
            "binary_version": "20160330-0939-0ubuntu1"
        }
    ]
}

Database specific

source
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2016/UBUNTU-CVE-2016-0811.json"