~ubuntu-security/ubuntu-cve-tracker/master

« back to all changes in this revision

Viewing changes to retired/CVE-2016-3917

  • Committer: Steve Beattie
  • Date: 2019-02-19 06:18:27 UTC
  • Revision ID: sbeattie@ubuntu.com-20190219061827-oh57fzcfc1u9dlfk
The ubuntu-cve-tracker project has been converted to git.

Please use 'git clone https://git.launchpad.net/ubuntu-cve-tracker' to
get the converted tree.

Show diffs side-by-side

added added

removed removed

Lines of Context:
1
 
Candidate: CVE-2016-3917
2
 
PublicDate: 2016-10-10
3
 
References:
4
 
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-3917
5
 
 http://source.android.com/security/bulletin/2016-10-01.html
6
 
 https://android.googlesource.com/platform/frameworks/base/+/f5334952131afa835dd3f08601fb3bced7b781cd
7
 
Description:
8
 
 The fingerprint login feature in Android 6.0.1 before 2016-10-01 and 7.0
9
 
 before 2016-10-01 does not track the user account during the authentication
10
 
 process, which allows physically proximate attackers to authenticate as an
11
 
 arbitrary user by leveraging lockscreen access, aka internal bug 30744668.
12
 
Ubuntu-Description:
13
 
Notes:
14
 
Bugs:
15
 
Priority: medium
16
 
Discovered-by:
17
 
Assigned-to:
18
 
 
19
 
Patches_android:
20
 
upstream_android: needs-triage
21
 
precise_android: DNE
22
 
precise/esm_android: DNE
23
 
trusty_android: ignored (abandoned)
24
 
vivid/stable-phone-overlay_android: ignored (reached end-of-life)
25
 
vivid/ubuntu-core_android: DNE
26
 
xenial_android: ignored (abandoned)
27
 
yakkety_android: ignored (reached end-of-life)
28
 
zesty_android: ignored (reached end-of-life)
29
 
artful_android: DNE
30
 
bionic_android: DNE
31
 
devel_android: DNE