CVE-2014-7915: Integer Overflow
Published Oct 1, 2015
·Updated
Integer overflow in SampleTable.cpp in libstagefright in Android before 5.0.0 has unspecified impact and attack vectors, aka internal bug 15328708.
Affected Software
1 affected component
Google Android<=4.4.4
Event History
Oct 1, 2015
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
Which Android versions are explicitly identified as affected?
The issue is identified in Android versions before 5.0.0. The provided data does not identify affected device models or distributions.
2
Does exploitation require authentication?
The supplied CVSS vector lists authentication as not required (Au:N). It also lists network access as the attack vector (AV:N) and low attack complexity (AC:L).
3
What can be concluded about exploit delivery and impact?
The attack vectors and specific impact are described as unspecified. Although the CVSS vector indicates confidentiality, integrity, and availability impacts, the provided data does not explain how an attacker reaches the vulnerable code or what a successful exploit does.