CVE-2016-3820
published 2016-08-05CVE-2016-3820: The ih264d decoder in mediaserver in Android 6.x before 2016-08-01 mishandles slice numbers, which allows remote attackers to execute arbitrary code or cause a…
PriorityP344critical9.8CVSS 3.0
AVNACLPRNUINSUCHIHAH
EPSS
1.34%
68.1th percentile
The ih264d decoder in mediaserver in Android 6.x before 2016-08-01 mishandles slice numbers, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 28673410.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| android | — | — | |
| android | — | — | |
| android | — | — |
CVSS provenance
nvdv3.09.8CRITICALCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-pmx3-4h9r-qfpj: The ih264d decoder in mediaserver in Android 6
ghsa_unreviewed·2022-05-17
CVE-2016-3820 [CRITICAL] CWE-119 GHSA-pmx3-4h9r-qfpj: The ih264d decoder in mediaserver in Android 6
The ih264d decoder in mediaserver in Android 6.x before 2016-08-01 mishandles slice numbers, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 28673410.
OSV
CVE-2016-3820: The ih264d decoder in mediaserver in Android 6
osv·2016-08-05·CVSS 9.8
CVE-2016-3820 [CRITICAL] CVE-2016-3820: The ih264d decoder in mediaserver in Android 6
The ih264d decoder in mediaserver in Android 6.x before 2016-08-01 mishandles slice numbers, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 28673410.
Android
CVE-2016-3820: Android Security Bulletin 2016-08-01
CVE: CVE-2016-3820
Severity: CRITICAL
Affected AOSP versions: 6
vendor_android·2016-08-01·CVSS 9.8
CVE-2016-3820 [CRITICAL] CVE-2016-3820: Android Security Bulletin 2016-08-01
CVE: CVE-2016-3820
Severity: CRITICAL
Affected AOSP versions: 6
Android Security Bulletin 2016-08-01
CVE: CVE-2016-3820
Severity: CRITICAL
Affected AOSP versions: 6.0, 6.0.1
References: A-28673410
No detection rules found.
No public exploits indexed.
Fortinet
Looking Back at Fortinet’s Security Research and Vulnerability Discoveries
blogs_fortinet·2017-02-21
Looking Back at Fortinet’s Security Research and Vulnerability Discoveries
FORTIGUARD LABS THREAT RESEARCH
Looking Back at Fortinet’s Security Research and Vulnerability Discoveries
By Peixue Li | February 21, 2017
In an effort to provide more proactive protections in Fortinet products and to more effectively identify and defeat network threats, the Fortinet security research team works on discovering potential threats in popular products. As a result, over the past year we have discovered 84 vulnerabilities that have been reported to their respective vendors as part of our responsible vulnerability disclosure process. Fortinet protections against these discoveries were released to Fortinet products at the same time these vulnerabilities were reported to their vendors. As a result, Fortinet products have been able to proactively protect Fortinet customers’ netw
Fortinet
Deep Analysis of CVE-2016-3820 - Remote Code Execution Vulnerability in Android Mediaserver
blogs_fortinet·2016-08-17·CVSS 9.8
CVE-2016-3820 [CRITICAL] Deep Analysis of CVE-2016-3820 - Remote Code Execution Vulnerability in Android Mediaserver
FORTIGUARD LABS THREAT RESEARCH
Deep Analysis of CVE-2016-3820 - Remote Code Execution Vulnerability in Android Mediaserver
By Kai Lu | August 17, 2016
Google patched some Android security vulnerabilities in early August. One of them was a remote code execution vulnerability in Mediaserver (CVE-2016-3820), which was discovered by me. This vulnerability could enable an attacker using a specially crafted file to cause memory corruption during media file and data processing. This issue was rated as Critical by Google due to the possibility of remote code execution within the context of the Mediaserver process. The Mediaserver process has access to audio and video streams, as well as access to privileges that third-party apps could not normally access. The affected functionality is provided
http://source.android.com/security/bulletin/2016-08-01.htmlhttp://www.securityfocus.com/bid/92228https://android.googlesource.com/platform/external/libavc/+/a78887bcffbc2995cf9ed72e0697acf560875e9ehttp://source.android.com/security/bulletin/2016-08-01.htmlhttp://www.securityfocus.com/bid/92228https://android.googlesource.com/platform/external/libavc/+/a78887bcffbc2995cf9ed72e0697acf560875e9e
2016-08-05
Published