The Sonivox components in Android before 5.1.1 LMY48T allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bugs 23335715, 23307276, and 23286323.
References
Link | Resource |
---|---|
https://groups.google.com/forum/message/raw?msg=android-security-updates/_Rm-lKnS2M8/dGTcilt0CAAJ | Vendor Advisory |
Configurations
Information
Published : 2015-10-06 10:59
Updated : 2015-10-07 11:35
NVD link : CVE-2015-3874
Mitre link : CVE-2015-3874
JSON object : View
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer
Products Affected
- android