- EPSS 0.1%
- Veröffentlicht 08.12.2015 23:59:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Native Frameworks Library in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows attackers to obtain sensitive information, and consequently bypass an unspecified protection mechanism, via unknown vectors, as demonstrated by obtaining Si...
CVE-2015-6623
- EPSS 0.16%
- Veröffentlicht 08.12.2015 23:59:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
Wi-Fi in Android 6.0 before 2015-12-01 allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 24872703.
CVE-2015-6621
- EPSS 0.16%
- Veröffentlicht 08.12.2015 23:59:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
SystemUI in Android 5.x before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 23909438.
CVE-2015-6620
- EPSS 12.57%
- Veröffentlicht 08.12.2015 23:59:04
- Zuletzt bearbeitet 12.04.2025 10:46:40
libstagefright in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows attackers to gain privileges via a crafted application, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bugs 24123723 and 24445127.
CVE-2015-6619
- EPSS 0.15%
- Veröffentlicht 08.12.2015 23:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
The kernel in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows attackers to gain privileges via a crafted application, aka internal bug 23520714.
CVE-2015-6618
- EPSS 0.16%
- Veröffentlicht 08.12.2015 23:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
Bluetooth in Android 4.4 and 5.x before 5.1.1 LMY48Z allows user-assisted remote attackers to execute arbitrary code by leveraging access to the local physical environment, aka internal bug 24595992.
CVE-2015-6617
- EPSS 0.93%
- Veröffentlicht 08.12.2015 23:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
Skia, as used in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bug 23648740.
CVE-2015-6616
- EPSS 1.82%
- Veröffentlicht 08.12.2015 23:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
mediaserver in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file, aka internal bugs 24630158 and 23882800, a different vul...
CVE-2015-6783
- EPSS 0.25%
- Veröffentlicht 06.12.2015 01:59:20
- Zuletzt bearbeitet 12.04.2025 10:46:40
The FindStartOffsetOfFileInZipFile function in crazy_linker_zip.cpp in crazy_linker (aka Crazy Linker) in Android 5.x and 6.x, as used in Google Chrome before 47.0.2526.73, improperly searches for an EOCD record, which allows attackers to bypass a si...
- EPSS 0.07%
- Veröffentlicht 03.11.2015 11:59:10
- Zuletzt bearbeitet 12.04.2025 10:46:40
mediaserver in Android before 5.1.1 LMY48X allows remote attackers to obtain sensitive information, and consequently bypass an unspecified protection mechanism, via unknown vectors, aka internal bugs 23540907 and 23515142, a different vulnerability t...