Lucene search

K
cve[email protected]CVE-2015-6614
HistoryNov 03, 2015 - 11:59 a.m.

CVE-2015-6614

2015-11-0311:59:07
CWE-264
web.nvd.nist.gov
17
android
telephony
privilege escalation
cve-2015-6614
security vulnerability

5.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:P/A:P

6.8 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

23.5%

Telephony in Android 5.x before 5.1.1 LMY48X allows attackers to gain privileges, and consequently bypass intended network-interface restrictions, perform expensive data transfers, or cause a denial of service (call-reception outage or mute manipulation), via a crafted application, aka internal bug 21900139.

Affected configurations

NVD
Node
googleandroidMatch5.0
OR
googleandroidMatch5.1

5.8 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:P/A:P

6.8 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

23.5%