CVE-2015-7716: Buffer Overflow
Published Oct 6, 2015
·Updated
libstagefright in Android 5.x before 5.1.1 LMY48T allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 20721050, a different vulnerability than CVE-2015-3873.
Affected Software
1 affected component
Google Android<=5.1
Event History
Oct 6, 2015
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-7716?
CVE-2015-7716 has a critical severity level as it allows remote code execution and denial of service.
2
How do I fix CVE-2015-7716?
To fix CVE-2015-7716, update your Android device to version 5.1.1 or later.
3
Who is affected by CVE-2015-7716?
CVE-2015-7716 affects Android devices running versions prior to 5.1.1 LMY48T.
4
What type of attack does CVE-2015-7716 facilitate?
CVE-2015-7716 facilitates remote code execution and potentially leads to a denial of service.
5
What is the nature of the vulnerability in CVE-2015-7716?
CVE-2015-7716 is related to memory corruption in the libstagefright component of Android.