CVE-2016-9277: Samsung Mobile

High severity, CVSS 7.5. EPSS: 1.4% chance of exploitation in the next 30 days.

Integer overflow in SystemUI in KK(4.4) and L(5.0/5.1) on Samsung Note devices allows attackers to cause a denial of service (UI restart) via vectors involving APIs and an activity that computes an out-of-bounds array index, aka SVE-2016-6906.

Affected products

  • Samsung Samsung Mobile: version 4.4 only; version 5.0 only; version 5.1 only

Published 2016-11-11. Last modified 2026-06-17.