CVE-2016-3838: Google Android

Medium severity, CVSS 5.5. EPSS: 0.4% chance of exploitation in the next 30 days.

Android 6.x before 2016-08-01 allows attackers to cause a denial of service (loss of locked-screen 911 functionality) via a crafted application that uses the app-pinning feature, aka internal bug 28761672.

Affected products

  • Google Android: version 6.0 only; version 6.0.1 only

Published 2016-08-05. Last modified 2026-06-17.