CVE-2015-3879

Publication date 6 October 2015

Last updated 24 July 2024


Ubuntu priority

Description

Media Player Framework in Android before 5.1.1 LMY48T allows attackers to gain privileges via a crafted application, aka internal bug 23223325.

Read the notes from the security team

Status

Package Ubuntu Release Status
android 18.04 LTS bionic Not in release
17.10 artful Not in release
17.04 zesty Ignored end of life
16.10 yakkety Ignored end of life
16.04 LTS xenial Ignored abandoned
15.10 wily Ignored end of life
15.04 vivid Ignored end of life
14.04 LTS trusty Not in release
12.04 LTS precise Not in release

Notes


sbeattie

second fix is in the latest binary drivers for Nexus devices "libmedia OOB write anywhere. Clarify that decrypt destination is not a pointer for secure case."