CVE-2016-5856: Google Android

High severity, CVSS 7.0. EPSS: 0.6% chance of exploitation in the next 30 days.

Drivers/soc/qcom/spcom.c in the Qualcomm SPCom driver in the Android kernel 2017-03-05 allows local users to gain privileges, a different vulnerability than CVE-2016-5857.

Affected products

  • Google Android: up to and including 6.0.1
  • Linux Linux Kernel: version 4.3.6 only

Published 2017-04-12. Last modified 2026-06-17.