4.3
CVSSv2

CVE-2016-6678

Published: 10/10/2016 Updated: 18/01/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

The Motorola USBNet driver in Android prior to 2016-10-05 on Nexus 6 devices allows malicious users to obtain sensitive information via a crafted application, aka internal bug 29914434.

Vulnerable Product Search on Vulmon Subscribe to Product

google android

Recent Articles

Google caps punch-yourself-in-the-face malicious charger hack
The Register • Darren Pauli • 09 Jan 2017

Another reason to avoid those DEF CON charging stations.

Google has capped a dangerous but somewhat obscure boot mode vulnerability that allowed infected PCs and chargers to put top end Nexus phones into denial of service states. IBM reported the flaw (CVE-2016-8467) which allows infected computers and malicious power chargers to compromise Nexus 6 and 6p phones. Google badged the bug high severity and prevented locked bootloaders from booting into the necessary risky boot modes. Nexus 6 devices were patched in November while 6P devices received the u...