VYPR
Unrated severityNVD Advisory· Published Apr 18, 2018· Updated Sep 16, 2024

CVE-2016-10443

CVE-2016-10443

Description

In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon Wear MDM9206, MDM9607, MDM9635M, MDM9640, MDM9645, MDM9650, MSM8909W, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 430, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 808, SD 810, SD 820, SD 820A, SD 835, SD 845, and SD 850, packet replay may be possible.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Packet replay vulnerability in Qualcomm Snapdragon firmware allows an attacker to replay network packets, compromising integrity.

Vulnerability

A packet replay vulnerability exists in Qualcomm Snapdragon firmware across multiple chipsets including MDM9206, MDM9607, MDM9635M, MDM9640, MDM9645, MDM9650, MSM8909W, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 430, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 808, SD 810, SD 820, SD 820A, SD 835, SD 845, and SD 850. The issue affects Android builds prior to the 2018-04-05 security patch level. The vulnerability allows an attacker to replay previously captured packets, potentially leading to spoofed communications or denial of service [1].

Exploitation

An attacker with network access and the ability to capture legitimate packets can replay them without authentication or user interaction. The attack does not require privileged access to the device; it can be performed remotely over the air if the device uses an affected Qualcomm cellular modem [1].

Impact

Successful exploitation enables the attacker to replay network packets, which could lead to acceptance of stale or forged messages, potentially affecting confidentiality, integrity, or availability of the device's communication [1].

Mitigation

The vulnerability is fixed in Android security patch level 2018-04-05 or later, as provided in the April 2018 Android Security Bulletin [1]. Users should ensure their devices receive the security update from their OEM. No other workarounds are documented.

AI Insight generated on May 26, 2026. Synthesized from this CVE's description and the cited reference URLs; citations are validated against the source bundle.

Affected products

4
  • Qualcomm, Inc./Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wearv5
    Range: MDM9206, MDM9607, MDM9635M, MDM9640, MDM9645, MDM9650, MSM8909W, SD 210/SD 212/SD 205, SD 410/12, SD 425, SD 430, SD 450, SD 615/16/SD 415, SD 617, SD 625, SD 650/52, SD 808, SD 810, SD 820, SD 820A, SD 835, SD 845, SD 850

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.