PT-2015-2310 · Google · Android

Publicado

2015-10-06

·

Atualizado

2015-10-07

·

CVE-2015-7717

CVSS v2.0

9.3

Alta

VetorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Android mediaserver versions 5.0 through 5.1.1 LMY48T Android mediaserver versions prior to 6.0 2015-10-01
Description The issue is related to insufficient access control in the mediaserver component of the Android operating system. It can be exploited by a remote attacker using a specially crafted application to gain elevated privileges.
Recommendations For Android mediaserver versions 5.0 through 5.1.1 LMY48T, update to version 5.1.1 LMY48T or later. For Android mediaserver versions prior to 6.0 2015-10-01, update to a version released after 2015-10-01.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2015-11664
CVE-2015-7717

Produtos afetados

Android