CVE Vulnerabilities

CVE-2015-6640

Published: Jan 06, 2016 | Modified: Dec 07, 2016
CVSS 3.x
7.8
HIGH
Source:
NVD
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

The prctl_set_vma_anon_name function in kernel/sys.c in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 does not ensure that only one vma is accessed in a certain update action, which allows attackers to gain privileges or cause a denial of service (vma list corruption) via a crafted application, aka internal bug 20017123.

Affected Software

Name Vendor Start Version End Version
Android Google 4.4.4 (including) 4.4.4 (including)
Android Google 5.0 (including) 5.0 (including)
Android Google 5.1.1 (including) 5.1.1 (including)
Android Google 6.0 (including) 6.0 (including)
Android Ubuntu esm-apps/xenial *
Android Ubuntu trusty *
Android Ubuntu vivid *
Android Ubuntu vivid/stable-phone-overlay *
Android Ubuntu wily *
Android Ubuntu xenial *
Android Ubuntu yakkety *
Android Ubuntu zesty *
Linux Ubuntu vivid *
Linux-flo Ubuntu trusty *
Linux-flo Ubuntu vivid *
Linux-goldfish Ubuntu trusty *
Linux-goldfish Ubuntu vivid *
Linux-grouper Ubuntu trusty *
Linux-linaro-omap Ubuntu precise *
Linux-linaro-shared Ubuntu precise *
Linux-linaro-vexpress Ubuntu precise *
Linux-lts-quantal Ubuntu precise *
Linux-lts-quantal Ubuntu precise/esm *
Linux-lts-raring Ubuntu precise *
Linux-lts-raring Ubuntu precise/esm *
Linux-lts-saucy Ubuntu precise *
Linux-lts-saucy Ubuntu precise/esm *
Linux-maguro Ubuntu trusty *
Linux-mako Ubuntu trusty *
Linux-mako Ubuntu vivid *
Linux-manta Ubuntu trusty *
Linux-manta Ubuntu vivid *
Linux-qcm-msm Ubuntu precise *

References