CVE-2015-4111: Input Validation
Published Jul 20, 2015
·Updated
mcdemuxmp4ds.ax in an unspecified third-party codec demux in BlackBerry Link before 1.2.3.53 with installer before 1.1.0.22 allows remote attackers to execute arbitrary code via a crafted MP4 file.
Affected Software
1 affected component
BlackBerry BlackBerry Link<=1.2.3.52
Event History
Jul 20, 2015
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-4111?
CVE-2015-4111 has been classified as a high severity vulnerability due to its potential to allow remote code execution.
2
How do I fix CVE-2015-4111?
To fix CVE-2015-4111, users should upgrade BlackBerry Link to version 1.2.3.53 or later.
3
What types of attacks can exploit CVE-2015-4111?
CVE-2015-4111 can be exploited by remote attackers using a crafted MP4 file to execute arbitrary code.
4
Is CVE-2015-4111 specific to certain versions of BlackBerry Link?
Yes, CVE-2015-4111 affects BlackBerry Link versions prior to 1.2.3.53.
5
Who is affected by CVE-2015-4111?
Users of BlackBerry Link versions earlier than 1.2.3.53 are affected by CVE-2015-4111.