VYPR
Unrated severityNVD Advisory· Published Apr 18, 2018· Updated Sep 16, 2024

CVE-2016-10427

CVE-2016-10427

Description

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8909W, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 425, SD 430, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 800, SD 808, SD 810, SD 820, SD 835, SD 845, SD 850, and SDX20, improper boundary check in RLC AM module leads to denial of service by reaching assertion.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Improper boundary check in RLC AM module on Qualcomm Snapdragon allows denial of service via crafted input reaching assertion.

Vulnerability

In Android before the 2018-04-05 security patch level on numerous Qualcomm Snapdragon SoCs (e.g., MDM9206, MDM9607, SD 410, etc.), the Radio Link Control Acknowledged Mode (RLC AM) module has an improper boundary check. This leads to reaching an assertion, resulting in denial of service. The affected versions include those prior to the April 2018 Android security patch.

Exploitation

An attacker can exploit this vulnerability by sending a specially crafted input that triggers the improper boundary check in the RLC AM module, causing the system to hit an assertion and crash. The attacker requires the ability to send network packets that are processed by the affected module.

Impact

Successful exploitation results in a denial of service (system crash) due to the assertion failure. The impact is limited to availability, with no disclosure or modification of data.

Mitigation

The vulnerability was addressed in the Android security bulletin for April 2018 [1]. Users should install the security update from their device manufacturer. No workaround is provided, as patching is the recommended mitigation.

AI Insight generated on May 26, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

3
  • Qualcomm, Inc./Snapdragon Mobile, Snapdragon Wearv5
    Range: MDM9206, MDM9607, MDM9615, MDM9625, MDM9635M, MDM9640, MDM9645, MDM9650, MDM9655, MSM8909W, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 425, SD 430, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 800, SD 808, SD 810, SD 820, SD 835, SD 845, SD 850, SDX20

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.