PT-2015-2632 · Google · Android
Published
2015-11-03
·
Updated
2019-02-12
·
CVE-2015-6613
CVSS v2.0
5.1
Medium
| Vector | AV:N/AC:H/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
Android versions prior to 5.1.1 LMY48X
Android versions prior to 6.0 2015-11-01
Description
The issue is related to the Bluetooth component in the Android operating system, which lacks input data sanitization measures. This allows a remote attacker to exploit the issue using a specially crafted application, potentially gaining privileges.
Recommendations
For Android versions prior to 5.1.1 LMY48X, update to version 5.1.1 LMY48X or later.
For Android versions prior to 6.0 2015-11-01, update to a version released after 2015-11-01.
Fix
Command Injection
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Android