CVE-2015-6607: SQL Injection
Published Oct 6, 2015
·Updated
SQLite before 3.8.9, as used in Android before 5.1.1 LMY48T, allows attackers to gain privileges via a crafted application, aka internal bug 20099586.
Affected Software
2 affected components
Sqlite SQLite<=3.8.8.3
Google Android=5.1
Event History
Oct 6, 2015
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-6607?
CVE-2015-6607 has a medium severity level due to its potential to allow privilege escalation through a crafted application.
2
How do I fix CVE-2015-6607?
To fix CVE-2015-6607, update SQLite to version 3.8.9 or later.
3
Which versions are affected by CVE-2015-6607?
CVE-2015-6607 affects SQLite versions before 3.8.9.
4
What platforms are impacted by CVE-2015-6607?
CVE-2015-6607 impacts Android devices running versions prior to 5.1.1 LMY48T.
5
Is there a workaround for CVE-2015-6607?
There are no known effective workarounds for mitigating CVE-2015-6607 other than applying the security update.