CVE-2016-0801

CRITICAL

Broadcom Wi-Fi driver - Memory Corruption

Title source: llm

Description

The Broadcom Wi-Fi driver in the kernel in Android 4.x before 4.4.4, 5.x before 5.1.1 LMY49G, and 6.x before 2016-02-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted wireless control message packets, aka internal bug 25662029.

Exploits (3)

exploitdb WORKING POC
by AbdSec · cdosandroid
https://www.exploit-db.com/exploits/39801
nomisec WORKING POC 79 stars
by abdsec · poc
https://github.com/abdsec/CVE-2016-0801
nomisec WORKING POC
by zsaurus · poc
https://github.com/zsaurus/CVE-2016-0801-test

Scores

CVSS v3 9.8
EPSS 0.4754
EPSS Percentile 97.7%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-20
Status published
Products (9)
apple/iphone_os < 9.2.1
apple/mac_os_x < 10.11.3
apple/tvos < 9.1
apple/watchos < 2.1
google/android 4.4.4
google/android 5.0
google/android 5.1.1
google/android 6.0
google/android 6.0.1
Published Feb 07, 2016
Tracked Since Feb 18, 2026