CVE-2016-3933: Google Android

High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.

mediaserver in Android before 2016-10-05 on Nexus 9 and Pixel C devices allows attackers to gain privileges via a crafted application, aka internal bug 29421408.

Affected products

  • Google Android: up to and including 7.0

Published 2016-10-10. Last modified 2026-06-17.