CVE-2016-8446 is an elevation of privilege vulnerability affecting Android devices with MediaTek components, specifically within the thermal and video drivers. A local malicious application could exploit this to execute arbitrary code in the kernel's context. Rated High with a CVSS score of 7.0, it requires a user interaction and prior compromise of a privileged process, but successful exploitation grants full confidentiality, integrity, and availability impact. There is no public exploit code available, and it shows minimal community or media attention, indicating a low current exploitation risk.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 7.1.0CPE matchmatch criteria | cpe:2.3:o:google:android:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.0 Bluesky, 0.1 Mastodon, and 0.0 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.2 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.