CVE-2016-3880 PUBLISHED

Multiple buffer overflows in rtsp/ASessionDescription.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, 6.x before 2016-09-01, and 7.0 before 2016-09-01 allow remote attackers to cause a denial of service (device hang or reboot) via a crafted media file, aka internal bug 25747670.

EPSS 0.30% · 52.9th percentile

Risk Scores

EPSS Score
0.30%
52.9th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSandroid0, 20150818-1500-0ubuntu2, 20150818-1500-0ubuntu3

Timeline

References

Open in Interactive Console →