CVE-2016-8438

Publication date

2017-01-12 20:00:00

Family

google_android

State

PUBLISHED

Description

Integer overflow leading to a TOCTOU condition in hypervisor PIL. An integer overflow exposes a race condition that may be used to bypass (Peripheral Image Loader) PIL authentication. Product: Android. Versions: Kernel 3.18. Android ID: A-31624565. References: QC-CR#1023638.