Candidate: CVE-2015-3831
PublicDate: 2015-10-01 00:59:00 UTC
References:
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3831
 https://groups.google.com/forum/message/raw?msg=android-security-updates/Ugvu3fi6RQM/yzJvoTVrIQAJ
 https://android.googlesource.com/platform/frameworks/av/+/51504928746edff6c94a1c498cf99c0a83bedaed
Description:
 Buffer overflow in the readAt function in BpMediaHTTPConnection in
 media/libmedia/IMediaHTTPConnection.cpp in the mediaserver service in
 Android before 5.1.1 LMY48I allows attackers to execute arbitrary code via
 a crafted application, aka internal bug 19400722.
Ubuntu-Description:
Notes:
 mdeslaur> need to check if used
Bugs:
Priority: medium
Discovered-by:
Assigned-to:
CVSS: 

Patches_android:
upstream_android: needs-triage
precise_android: DNE
trusty_android: ignored (code not compiled)
trusty/esm_android: DNE (trusty was ignored [code not compiled])
vivid_android: ignored (code not compiled)
vivid/stable-phone-overlay_android: ignored (code not compiled)
vivid/ubuntu-core_android: DNE
wily_android: ignored (code not compiled)
devel_android: ignored (code not compiled)
