VYPR
Unrated severityNVD Advisory· Published Apr 18, 2018· Updated Sep 16, 2024

CVE-2016-10422

CVE-2016-10422

Description

In Android before 2018-04-05 or earlier security patch level on Qualcomm Small Cell SoC, Snapdragon Automobile, Snapdragon Mobile, and Snapdragon Wear FSM9055, IPQ4019, MDM9206, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 425, SD 430, SD 450, SD 617, SD 625, SD 650/52, SD 800, SD 808, SD 810, SD 820, SD 820A, SD 835, SD 845, SD 850, and SDX20, improper access control in system call leads to unauthorized access.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Improper access control in a Qualcomm SoC system call on Android allows unauthorized access, affecting multiple Snapdragon platforms.

Vulnerability

CVE-2016-10422 is an improper access control vulnerability in a system call within Qualcomm SoCs used in Android devices. The affected components include FSM9055, IPQ4019, MDM9206, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 425, SD 430, SD 450, SD 617, SD 625, SD 650/52, SD 800, SD 808, SD 810, SD 820, SD 820A, SD 835, SD 845, SD 850, and SDX20. The issue exists in Android versions prior to the 2018-04-05 security patch level [1].

Exploitation

An attacker with local access to the device can exploit the improper access control in the system call to bypass intended security restrictions. No additional authentication or user interaction is required beyond local execution [1].

Impact

Successful exploitation leads to unauthorized access, potentially allowing the attacker to read sensitive data, modify system settings, or escalate privileges within the affected Android environment [1].

Mitigation

The vulnerability is addressed in the Android security patch level of 2018-04-05 or later. Users should ensure their devices receive the April 2018 or newer security updates from their device manufacturers [1].

AI Insight generated on May 26, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

4
  • Range: <2018-04-05
  • Range: <2018-04-05
  • Range: <2018-04-05
  • Qualcomm, Inc./Small Cell SoC , Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wearv5
    Range: FSM9055, IPQ4019, MDM9206, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 425, SD 430, SD 450, SD 617, SD 625, SD 650/52, SD 800, SD 808, SD 810, SD 820, SD 820A, SD 835, SD 845, SD 850, SDX20

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.