Get a Pentest and security assessment of your IT network.

2021-current

CVE-2015-1536 – Integer overflow in the Bitmap_createFromParcel function in core/jni/andr

Integer overflow in the Bitmap_createFromParcel function in core/jni/android/graphics/Bitmap.cpp in Android before 5.1.1 LMY48I allows attackers to cause a denial of service (system_server crash) or obtain sensitive system_server memory-content information via a crafted application that leverages improper unmarshalling of bitmaps, aka internal bug 19666945.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-1536

Reference (s):

  • https://android.googlesource.com/platform/frameworks/base/+/d44e5bde18a41beda39d49189bef7f2ba7c8f3cb
  • MLIST:[android-security-updates] 20150812 Nexus Security Bulletin (August 2015)
  • URL: https://groups.google.com/forum/message/raw?msg=android-security-updates/Ugvu3fi6RQM/yzJvoTVrIQAJ
Related posts
2021-current

CVE-2004-1715 - Directory traversal vulnerability in MIMEsweeper for Web before 5.0.4 all

2021-current

CVE-2014-5419 - GE Multilink ML800, ML1200, ML1600, and ML2400 switches with firmware 4.2

2021-current

CVE-2019-7128 - Adobe Acrobat and Reader versions 2019.010.20098 and earlier, 2019.010.20

2021-current

CVE-2020-10979 - GitLab EE/CE 11.10 to 12.9 is leaking information on restricted CI pipeli