CVE-2016-0830 is a denial-of-service vulnerability affecting Android 6.x devices prior to the March 2016 security update. It stems from memory corruption in the Bluetooth component (btif_config.c) when an attacker triggers an excessive number of configuration entries, exceeding file size limits. This vulnerability carries a CVSS v3 score of 6.5 (Medium), indicating it can be exploited remotely with low attack complexity, leading to a persistent daemon crash and denial of service. There is no known public exploit code (Metasploit, Nuclei, ExploitDB), and it is not listed in the KEV catalog, suggesting it is not actively exploited. Community discussion and media coverage are minimal, with only one mention and one article found.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
6.0CPE matchmatch criteria | cpe:2.3:o:google:android:6.0:*:*:*:*:*:*:* | ||
6.0.1CPE matchmatch criteria | cpe:2.3:o:google:android:6.0.1:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.