CVE-2016-3830
- EPSS 0.19%
- Veröffentlicht 05.08.2016 20:59:20
- Zuletzt bearbeitet 12.04.2025 10:46:40
codecs/aacdec/SoftAAC2.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 allows remote attackers to cause a denial of service (device hang or reboot) via crafted ADTS d...
CVE-2016-3829
- EPSS 0.19%
- Veröffentlicht 05.08.2016 20:59:19
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ih264d decoder in mediaserver in Android 6.x before 2016-08-01 does not initialize certain structure members, which allows remote attackers to cause a denial of service (device hang or reboot) via a crafted media file, aka internal bug 29023649.
CVE-2016-3828
- EPSS 0.19%
- Veröffentlicht 05.08.2016 20:59:18
- Zuletzt bearbeitet 12.04.2025 10:46:40
decoder/ih264d_api.c in mediaserver in Android 6.x before 2016-08-01 mishandles invalid PPS and SPS NAL units, which allows remote attackers to cause a denial of service (device hang or reboot) via a crafted media file, aka internal bug 28835995.
CVE-2016-3827
- EPSS 0.19%
- Veröffentlicht 05.08.2016 20:59:16
- Zuletzt bearbeitet 12.04.2025 10:46:40
codecs/hevcdec/SoftHEVC.cpp in libstagefright in mediaserver in Android 6.0.1 before 2016-08-01 mishandles decoder errors, which allows remote attackers to cause a denial of service (device hang or reboot) via a crafted media file, aka internal bug 2...
CVE-2016-3826
- EPSS 0.02%
- Veröffentlicht 05.08.2016 20:59:15
- Zuletzt bearbeitet 12.04.2025 10:46:40
services/audioflinger/Effects.cpp in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 does not validate the reply size for an AudioFlinger effect command, which allows attackers to gain privil...
CVE-2016-3825
- EPSS 0.02%
- Veröffentlicht 05.08.2016 20:59:14
- Zuletzt bearbeitet 12.04.2025 10:46:40
mm-video-v4l2/vidc/venc/src/omx_video_base.cpp in mediaserver in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 allocates an incorrect amount of memory, which allows attackers to gain privileges via a crafted application, a...
CVE-2016-3824
- EPSS 0.02%
- Veröffentlicht 05.08.2016 20:59:13
- Zuletzt bearbeitet 12.04.2025 10:46:40
omx/OMXNodeInstance.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 does not validate the buffer port, which allows attackers to gain privileges via a crafted applica...
CVE-2016-3823
- EPSS 0.02%
- Veröffentlicht 05.08.2016 20:59:11
- Zuletzt bearbeitet 12.04.2025 10:46:40
The secure-session feature in the mm-video-v4l2 venc component in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 mishandles heap pointers, which allows attackers to gain privileges via a cra...
CVE-2016-3822
- EPSS 0.35%
- Veröffentlicht 05.08.2016 20:59:10
- Zuletzt bearbeitet 12.04.2025 10:46:40
exif.c in Matthias Wandel jhead 2.87, as used in libjhead in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01, allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds ac...
CVE-2016-3821
- EPSS 0.84%
- Veröffentlicht 05.08.2016 20:59:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
libmedia in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-08-01 has certain incorrect declarations, which allows remote attackers to execute arbitrary code or cause a denial of service (NULL poin...