Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2015-3827 | First vendor Publication | 2015-09-30 |
Vendor | Cve | Last vendor Modification | 2017-09-21 |
Security-Database Scoring CVSS v3
Cvss vector : N/A | |||
---|---|---|---|
Overall CVSS Score | NA | ||
Base Score | NA | Environmental Score | NA |
impact SubScore | NA | Temporal Score | NA |
Exploitabality Sub Score | NA | ||
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:M/Au:N/C:C/I:C/A:C) | |||
---|---|---|---|
Cvss Base Score | 9.3 | Attack Range | Network |
Cvss Impact Score | 10 | Attack Complexity | Medium |
Cvss Expoit Score | 8.6 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
The MPEG4Extractor::parseChunk function in MPEG4Extractor.cpp in libstagefright in Android before 5.1.1 LMY48I does not validate the relationship between chunk sizes and skip sizes, which allows remote attackers to execute arbitrary code or cause a denial of service (integer underflow and memory corruption) via crafted MPEG-4 covr atoms, aka internal bug 20923261. |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3827 |
CWE : Common Weakness Enumeration
% | Id | Name |
---|---|---|
50 % | CWE-189 | Numeric Errors (CWE/SANS Top 25) |
50 % | CWE-119 | Failure to Constrain Operations within the Bounds of a Memory Buffer |
CPE : Common Platform Enumeration
Snort® IPS/IDS
Date | Description |
---|---|
2015-09-03 | Android Stagefright MP4 buffer overflow attempt RuleID : 35435 - Revision : 5 - Type : OS-MOBILE |
2015-09-03 | Android Stagefright MP4 buffer overflow attempt RuleID : 35434 - Revision : 5 - Type : OS-MOBILE |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2021-05-04 12:40:02 |
|
2021-04-22 01:48:58 |
|
2020-05-23 01:55:49 |
|
2020-05-23 00:45:23 |
|
2017-09-21 09:25:20 |
|
2017-08-05 12:05:53 |
|
2017-04-27 12:01:43 |
|
2016-12-07 21:24:38 |
|
2016-11-29 00:25:14 |
|
2016-06-29 00:57:56 |
|
2016-04-27 02:27:02 |
|
2015-10-01 21:20:24 |
|
2015-10-01 09:22:44 |
|