VYPR
High severity7.8NVD Advisory· Published Aug 5, 2016· Updated Jun 17, 2026

CVE-2016-3833

CVE-2016-3833

Description

The Shell component in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 does not properly manage the MANAGE_USERS and CREATE_USERS permissions, which allows attackers to bypass intended access restrictions via a crafted application, aka internal bug 29189712.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

7
  • Google/Android6 versions
    cpe:2.3:o:google:android:5.0.1:*:*:*:*:*:*:*+ 5 more
    • cpe:2.3:o:google:android:5.0.1:*:*:*:*:*:*:*
    • cpe:2.3:o:google:android:5.0:*:*:*:*:*:*:*
    • cpe:2.3:o:google:android:5.1.0:*:*:*:*:*:*:*
    • cpe:2.3:o:google:android:5.1:*:*:*:*:*:*:*
    • cpe:2.3:o:google:android:6.0.1:*:*:*:*:*:*:*
    • cpe:2.3:o:google:android:6.0:*:*:*:*:*:*:*
  • Range: >=5.0,<5.0.2 | >=5.1,<5.1.1 | >=6,<2016-08-01

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.