IBM X-Force Application Security Research Team recently discovered a previously undocumented vulnerability in older versions of Nexus 5Xs Android images. IBM is not aware of any exploitation attempts of this vulnerability. The vulnerability could have been exploited by physical or nonphysical attackers with Android Debug Bridge (ADB) access to the device. IBM disclosed this issue to Android a few months ago, and the Android Security Team recently acknowledged it was patched. In the vulnerable versions of the bootloader, such a crash would allow an attacker to obtain a full memory dump of the device using tools such as QPST Configuration. The resulting memory dump files would then be available under the attacker’s PC.”]