Lucene search

K
cve[email protected]CVE-2015-6616
HistoryDec 08, 2015 - 11:59 p.m.

CVE-2015-6616

2015-12-0823:59:00
CWE-119
web.nvd.nist.gov
30
mediaserver
android
remote code execution
denial of service
memory corruption
cve-2015-6616
nvd

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.6 High

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

55.6%

mediaserver in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bugs 24630158 and 23882800, a different vulnerability than CVE-2015-8505, CVE-2015-8506, and CVE-2015-8507.

Affected configurations

NVD
Node
googleandroidRange5.05.1.1
OR
googleandroidMatch6.0

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.6 High

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

55.6%