Security Advisory

CVE-2016-3885

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2016-09-11 21:00:00
Last updated 2024-08-06 00:10:31
Assigner google_android
State PUBLISHED

Description

debuggerd/debuggerd.cpp in Debuggerd in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-09-01, and 7.0 before 2016-09-01 mishandles the interaction between PTRACE_ATTACH operations and thread exits, which allows attackers to gain privileges via a crafted application, aka internal bug 29555636.