CVE Vulnerabilities

CVE-2015-3861

Published: Oct 01, 2015 | Modified: Oct 01, 2015
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
NEGLIGIBLE

Multiple integer overflows in the addVorbisCodecInfo function in matroska/MatroskaExtractor.cpp in libstagefright in mediaserver in Android before 5.1.1 LMY48M allow remote attackers to cause a denial of service (device inoperability) via crafted Matroska data, aka internal bug 21296336.

Affected Software

Name Vendor Start Version End Version
Android Google * 5.1 (including)
Android Ubuntu devel *
Android Ubuntu trusty *
Android Ubuntu vivid *
Android Ubuntu vivid/stable-phone-overlay *
Android Ubuntu wily *

References