First published: Mon Jan 04 2016(Updated: )
The kernel in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to obtain sensitive information, and consequently bypass an unspecified protection mechanism, via unknown vectors, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 24157888.
Credit: security@android.com
Affected Software | Affected Version | How to fix |
---|---|---|
Google Android | ||
Google Android | =5.1.0 | |
Google Android | =6.0 | |
Google Android | =6.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-6642 is considered a high severity vulnerability allowing potential data exposure.
CVE-2015-6642 affects Android versions prior to 5.1.1 LMY49F and 6.0 before 2016-01-01.
To mitigate CVE-2015-6642, update your Android device to the latest version beyond 6.0 or 5.1.1 LMY49F.
CVE-2015-6642 is a potential information disclosure vulnerability in the Android kernel.
Attackers can exploit CVE-2015-6642 to obtain sensitive information and bypass certain protection mechanisms.