CVE-2016-0832

MEDIUM

Android <LMY49H - Privilege Escalation

Title source: llm

Description

Setup Wizard in Android 5.1.x before LMY49H and 6.x before 2016-03-01 allows physically proximate attackers to bypass the Factory Reset Protection protection mechanism and delete data via unspecified vectors, aka internal bug 25955042.

Scores

CVSS v3 6.1
EPSS 0.0002
EPSS Percentile 3.8%
Attack Vector PHYSICAL
CVSS:3.0/AV:P/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H

Classification

CWE
CWE-254 CWE-264
Status draft

Affected Products (8)

google/android
google/android
google/android
google/android
google/android
google/android
google/android
google/android

Timeline

Published Mar 12, 2016
Tracked Since Feb 18, 2026