CVE-2016-6701

Priority
Description
A remote code execution vulnerability in libskia in Android 7.0 before
2016-11-01 could enable an attacker using a specially crafted file to cause
memory corruption during media file and data processing. This issue is
rated as High due to the possibility of remote code execution within the
context of the gallery process. Android ID: A-30190637.
Notes
jdstrandcode not present in chromium sources
Package
Upstream:released (Android 7.0 2016-11-01)
Ubuntu 12.04 ESM (Precise Pangolin):DNE
Ubuntu 14.04 ESM (Trusty Tahr):DNE (trusty was ignored [abandoned])
Ubuntu 16.04 LTS (Xenial Xerus):ignored (abandoned)
Ubuntu 18.04 LTS (Bionic Beaver):DNE
Package
Upstream:needs-triage
Ubuntu 12.04 ESM (Precise Pangolin):DNE (precise was ignored)
Ubuntu 14.04 ESM (Trusty Tahr):DNE (trusty was not-affected [code-not-present])
Ubuntu 16.04 LTS (Xenial Xerus):not-affected (code-not-present)
Ubuntu 18.04 LTS (Bionic Beaver):not-affected (code-not-present)
Package
Upstream:not-affected (code-not-present)
Ubuntu 12.04 ESM (Precise Pangolin):DNE
Ubuntu 14.04 ESM (Trusty Tahr):DNE (trusty was not-affected [code-not-present])
Ubuntu 16.04 LTS (Xenial Xerus):not-affected (code-not-present)
Ubuntu 18.04 LTS (Bionic Beaver):DNE
More Information

Updated: 2020-01-29 19:56:21 UTC (commit 768ceb2fdee6790d707d0f681e1b54916744af1e)