First published: Tue Oct 06 2015(Updated: )
SQLite before 3.8.9, as used in Android before 5.1.1 LMY48T, allows attackers to gain privileges via a crafted application, aka internal bug 20099586.
Credit: security@android.com
Affected Software | Affected Version | How to fix |
---|---|---|
SQLite | <=3.8.8.3 | |
Android | =5.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-6607 has a medium severity level due to its potential to allow privilege escalation through a crafted application.
To fix CVE-2015-6607, update SQLite to version 3.8.9 or later.
CVE-2015-6607 affects SQLite versions before 3.8.9.
CVE-2015-6607 impacts Android devices running versions prior to 5.1.1 LMY48T.
There are no known effective workarounds for mitigating CVE-2015-6607 other than applying the security update.