First published: Thu Aug 24 2017(Updated: )
LibQJpeg in the Samsung Galaxy S6 before the October 2015 MR allows remote attackers to cause a denial of service (memory corruption and SIGSEGV) via a crafted image file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Samsung Mobile | =5.0 | |
Samsung Mobile | =5.0.1 | |
Samsung Mobile | =5.0.2 | |
Samsung Mobile | =5.1 | |
Samsung Mobile | =5.1.1 | |
Samsung Mobile | =6.0 | |
Samsung Mobile | =6.0.1 | |
Samsung Mobile | =7.0 | |
Samsung Mobile | =7.1 | |
Samsung Mobile | =7.1.1 | |
Samsung Mobile | =7.1.2 | |
Samsung Galaxy S6 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-7896 has been classified as a high severity vulnerability due to its potential to cause a denial of service through memory corruption.
To fix CVE-2015-7896, users should update their Samsung Galaxy S6 devices to the latest firmware versions provided by Samsung.
CVE-2015-7896 primarily affects Samsung Galaxy S6 devices running Android versions 5.0 to 7.1.2.
CVE-2015-7896 can lead to memory corruption which may cause the device to crash when processing a crafted image file.
Currently, the best course of action for CVE-2015-7896 is to avoid opening untrusted or suspicious image files until a firmware update is applied.