CVE-2015-6616
published 2015-12-08CVE-2015-6616: mediaserver in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory…
PriorityP341critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
1.86%
76.8th percentile
mediaserver in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bugs 24630158 and 23882800, a different vulnerability than CVE-2015-8505, CVE-2015-8506, and CVE-2015-8507.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | <= 5.1 | — | |
| android | — | — | |
| android | — | — | |
| android | >= 5.0 < 5.1.1 | 5.1.1 |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-66rc-wh84-rj79: mediaserver in Android before 5
ghsa_unreviewed·2022-05-17·CVSS 9.3
CVE-2015-8505 [CRITICAL] CWE-119 GHSA-66rc-wh84-rj79: mediaserver in Android before 5
mediaserver in Android before 5.1.1 LMY48Z allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 17769851, a different vulnerability than CVE-2015-6616, CVE-2015-8506, and CVE-2015-8507.
GHSA
GHSA-hr53-fr6r-cjxp: mediaserver in Android 6
ghsa_unreviewed·2022-05-17·CVSS 9.3
CVE-2015-8507 [CRITICAL] CWE-119 GHSA-hr53-fr6r-cjxp: mediaserver in Android 6
mediaserver in Android 6.0 before 2015-12-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 24157524, a different vulnerability than CVE-2015-6616, CVE-2015-8505, and CVE-2015-8506.
GHSA
GHSA-pw7g-v3fv-gg56: mediaserver in Android before 5
ghsa_unreviewed·2022-05-14·CVSS 9.3
CVE-2015-6616 [CRITICAL] CWE-119 GHSA-pw7g-v3fv-gg56: mediaserver in Android before 5
mediaserver in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bugs 24630158 and 23882800, a different vulnerability than CVE-2015-8505, CVE-2015-8506, and CVE-2015-8507.
GHSA
GHSA-ggg2-v734-xxp6: mediaserver in Android before 5
ghsa_unreviewed·2022-05-14·CVSS 9.3
CVE-2015-8506 [CRITICAL] CWE-119 GHSA-ggg2-v734-xxp6: mediaserver in Android before 5
mediaserver in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 24441553, a different vulnerability than CVE-2015-6616, CVE-2015-8505, and CVE-2015-8507.
Android
CVE-2015-6616: Android Security Bulletin 2015-12-01
CVE: CVE-2015-6616
Severity: CRITICAL
Affected AOSP versions: 6
vendor_android·2015-12-01·CVSS 9.3
CVE-2015-6616 [CRITICAL] CVE-2015-6616: Android Security Bulletin 2015-12-01
CVE: CVE-2015-6616
Severity: CRITICAL
Affected AOSP versions: 6
Android Security Bulletin 2015-12-01
CVE: CVE-2015-6616
Severity: CRITICAL
Affected AOSP versions: 6.0 and below
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2015-12-08
Published