CVE-2015-9161: Buffer Overflow
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MSM8909W, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 615/16/SD 415, SD 617, SD 650/52, SD 800, SD 808, and SD 810, TOCTOU condition could lead to a buffer overflow in function playreadyreaderbind().
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-9161?
The severity of CVE-2015-9161 is critical with a score of 9.8 out of 10.
Which devices are affected by CVE-2015-9161?
Devices running Qualcomm Snapdragon Mobile and Snapdragon Wear MSM8909W, SD 210/SD 212/SD 205, SD 400, SD 410/12, SD 615/16/SD 415, SD 617, SD 650/52, SD 800, SD 808, and SD 810 are affected by CVE-2015-9161.
What is the vulnerability description of CVE-2015-9161?
CVE-2015-9161 is a TOCTOU condition vulnerability that could lead to a buffer overflow in the playready_re function in Android before 2018-04-05 or earlier security patch level on the affected Qualcomm Snapdragon devices.
What is the fix for CVE-2015-9161?
Update your Android device to the latest security patch level released by Google to fix CVE-2015-9161.
Where can I find more information about CVE-2015-9161?
You can find more information about CVE-2015-9161 on the following references: [SecurityFocus](http://www.securityfocus.com/bid/103671), [Android Security Bulletin](https://source.android.com/security/bulletin/2018-04-01), [Android Security Bulletin - CVE-2015-9161](https://source.android.com/docs/security/bulletin/2018-04-01/#asterisk).