CVE-2016-3939: Google Android

High severity, CVSS 7.8. EPSS: 0.4% chance of exploitation in the next 30 days.

drivers/video/msm/mdss/mdss_debug.c in the Qualcomm video driver in Android before 2016-10-05 on Nexus 5X, Nexus 6, Nexus 6P, and Android One devices allows attackers to gain privileges via a crafted application, aka Android internal bug 30874196 and Qualcomm internal bug CR 1001224.

Affected products

  • Google Android: version 7.0 only

Published 2016-10-10. Last modified 2026-06-17.