FPII-1850:Elevation of Privilege Vulnerability in Qualcomm MDP Driver (Device Specific) CVE-2016-2443 ANDROID-26404525

An elevation of privilege vulnerability in the Qualcomm MDP driver could enable a local malicious application to execute arbitrary code within the context of the kernel. Normally a kernel code execution bug like this would be rated Critical, but because it first requires compromising a service that can call the driver, it is rated as High severity.
Note: There is no patch provided in the zip file for this device-specific issue. Where possible, we have provided links to publicly available patches or code snippets for reference. Where necessary, partners should contact the vendor to get an applicable patch. This information is provided for completeness and partner awareness.
Additional Technical Details:
Bug
ANDROID-26404525
(Qualcomm ref#: CR#975406)

Change-Id: Id93a9e861cffdeb23ac1043723adea023fbb429e
4 files changed