CVE-2016-10288 is an elevation of privilege vulnerability in the Qualcomm LED driver affecting Android devices running Linux Kernel 3.18. A local malicious application could exploit this to execute arbitrary code within the kernel's context. Rated High with a CVSS score of 7.0, successful exploitation requires compromising a privileged process, making it a high-complexity attack with high impact on confidentiality, integrity, and availability. There is no public exploit code available, no evidence of active exploitation, and minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
3.18CPE matchmatch criteria | cpe:2.3:o:linux:linux_kernel:3.18:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.0 Bluesky, 0.1 Mastodon, and 0.0 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.2 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.