Описание
The ih264d decoder in mediaserver in Android 6.x before 2016-08-01 does not initialize certain structure members, which allows remote attackers to cause a denial of service (device hang or reboot) via a crafted media file, aka internal bug 29023649.
Ссылки
- Vendor Advisory
- https://android.googlesource.com/platform/external/libavc/+/326fe991a4b7971e8aeaf4ac775491dd8abd85bbIssue TrackingPatch
- Vendor Advisory
- https://android.googlesource.com/platform/external/libavc/+/326fe991a4b7971e8aeaf4ac775491dd8abd85bbIssue TrackingPatch
Уязвимые конфигурации
Одно из
EPSS
5.5 Medium
CVSS3
7.1 High
CVSS2
Дефекты
Связанные уязвимости
The ih264d decoder in mediaserver in Android 6.x before 2016-08-01 does not initialize certain structure members, which allows remote attackers to cause a denial of service (device hang or reboot) via a crafted media file, aka internal bug 29023649.
The ih264d decoder in mediaserver in Android 6.x before 2016-08-01 does not initialize certain structure members, which allows remote attackers to cause a denial of service (device hang or reboot) via a crafted media file, aka internal bug 29023649.
Уязвимость операционной системы Android, позволяющая нарушителю вызвать отказ в обслуживании
EPSS
5.5 Medium
CVSS3
7.1 High
CVSS2