CVE-2015-3876
Publication date 2 October 2015
Last updated 24 July 2024
Ubuntu priority
libstagefright in Android through 5.1.1 LMY48M allows remote attackers to execute arbitrary code via crafted metadata in a (1) MP3 or (2) MP4 file.
Status
Package | Ubuntu Release | Status |
---|---|---|
android | ||
14.04 LTS trusty | Not in release | |
Notes
References
Other references
- https://code.google.com/p/android/issues/detail?id=182386
- http://twitter.com/4Dgifts/statuses/649589185792339968
- https://groups.google.com/forum/#!topic/android-security-updates/iv1BF0f0XY4
- https://android.googlesource.com/platform/frameworks/av/+/c580c836c1941fb4912e1dd4e08626caf98a62c7%5E!/#F0
- https://www.cve.org/CVERecord?id=CVE-2015-3876