Candidate: CVE-2015-6628 PublicDate: 2015-12-08 23:59:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-6628 http://source.android.com/security/bulletin/2015-12-01.html Description: Media Framework in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows attackers to obtain sensitive information, and consequently bypass an unspecified protection mechanism, via unknown vectors, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 24074485. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Peter Pi Assigned-to: CVSS: Patches_android: upstream: https://android.googlesource.com/platform/frameworks/av/+/5e7e87a383fdb1fece977097a7e3cc51b296f3a0%5E%21/ upstream_android: released (6.0 2015-12-01) precise_android: DNE precise/esm_android: DNE trusty_android: ignored (abandoned) trusty/esm_android: DNE (trusty was ignored [abandoned]) vivid_android: ignored (reached end-of-life) vivid/stable-phone-overlay_android: ignored (reached end-of-life) vivid/ubuntu-core_android: DNE wily_android: ignored (reached end-of-life) xenial_android: ignored (abandoned) yakkety_android: ignored (reached end-of-life) zesty_android: ignored (reached end-of-life) artful_android: DNE bionic_android: DNE devel_android: DNE