Privilege Escalation in Google Android - CVE-2016-3917
Published: October 5, 2016
Google Android
Detailed vulnerability description
The vulnerability allows a local application to obtain elevated privileges on the target system
The vulnerability exists due to improper validation of user-supplied input by the fingerprint login service of the affected software. By tricking the victim to follow a malicious link or open a malicious file attackers can gain elevated privileges and access device from valid user's account.
Successful exploitation of this vulnerability will result in privilege escalation on the vulnerable system.