CVE-2016-5341General(google / android)

LOWCVSS 5.9 · MEDIUM

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

The GPS component in Android before 2016-12-05 allows man-in-the-middle attackers to cause a denial of service (GPS signal-acquisition delay) via an incorrect xtra.bin or xtra2.bin file on a spoofed Qualcomm gpsonextra.net or izatcloud.net host, aka internal bug 31470303 and external bug 211602 (and AndroidID-7225554).

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-284

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

NONE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • android

Threat summary

  • 1 mentions across 1 observed day

What's happening

  • General: 1 classified signal
  • 1 total mentions across 1 day

Affected systems

Vendors
Products
android

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-05-11: 105-11
Signal classification1 categories
General
1100.0%
Full discourse1 post
  • Douglas Mun@douglasmun
    General

    @h4x0r_dz Dirty COW should be CVE-2016-5195, not CVE-2016-5341 as cited by the researcher. I want to take this opportunity to thank you for all your kind tweets. I always enjoy them. Have a great week ahead!

    Post summary

    The user corrects the CVE assignment for Dirty COW, stating it is CVE‑2016‑5195 instead of CVE‑2016‑5341, without giving further exploit or technical details.

    00020217
    4.5K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
OSgoogleandroid---

Explore more