VDB
CVE-2015-3864
CVE-2015-3864
PUBLISHED
KEV
CVSS 10 CRITICAL
Integer underflow in the MPEG4Extractor::parseChunk function in MPEG4Extractor.cpp in libstagefright in mediaserver in Android before 5.1.1 LMY48M allows remote attackers to execute arbitrary code via crafted MPEG-4 data, aka internal bug 23034759. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-3824.
EPSS 87.12% · 99.7th percentile
Risk Scores
CVSS 2.0
10
EPSS Score
87.12%
99.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| android | 0 |
Timeline
- Sep 17, 2015 PoC Published
- Sep 18, 2015 PoC Published
- Oct 1, 2015 CVE Published
- Mar 30, 2016 PoC Published
- Sep 27, 2016 PoC Published
- Sep 27, 2016 PoC Published
- May 29, 2018 PoC Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 20, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
References
- [android-security-updates] 20150909 Nexus Security Bulletin (September 2015) mailing-list
- 40436 exploit
- https://nvd.nist.gov/vuln/detail/CVE-2015-3864 advisory
- https://blog.zimperium.com/cve-2015-3864-metasploit-module-now-available-for-testing url
- https://blog.zimperium.com/reflecting-on-stagefright-patches url
- https://www.exploit-db.com/exploits/38226 url
- https://www.exploit-db.com/exploits/39640 url
- https://www.exploit-db.com/exploits/40436 url
- http://www.securityfocus.com/bid/76682 technical
- https://android.googlesource.com/platform/frameworks/av/+/6fe85f7e15203e48df2cc3e8e1c4bc6ad49dc968 advisory
- https://blog.zimperium.com/reflecting-on-stagefright-patches/ technical
- https://www.exploit-db.com/exploits/39640/ technical
- https://blog.zimperium.com/cve-2015-3864-metasploit-module-now-available-for-testing/ technical
- https://www.exploit-db.com/exploits/38226/ technical