CVE-2016-8438
Integer overflow leading to a TOCTOU condition in hypervisor PIL. An integer overflow exposes a race condition that may be used to bypass (Peripheral Image Loader) PIL authentication. Product: Android. Versions: Kernel 3.18. Android ID: A-31624565. References: QC-CR#1023638.
Date published : 2017-01-12
http://www.securityfocus.com/bid/95227
https://source.android.com/security/bulletin/2017-01-01.html