7.8
CVSSv3

CVE-2015-6640

Published: 06/01/2016 Updated: 07/12/2016
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 828
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

The prctl_set_vma_anon_name function in kernel/sys.c in Android prior to 5.1.1 LMY49F and 6.0 prior to 2016-01-01 does not ensure that only one vma is accessed in a certain update action, which allows malicious users to gain privileges or cause a denial of service (vma list corruption) via a crafted application, aka internal bug 20017123.

Vulnerable Product Search on Vulmon Subscribe to Product

google android 5.0

google android 5.1.1

google android 4.4.4

google android 6.0

Github Repositories

[CVE-2015-6640] poc by Edward Hung sourceandroidcom/security/bulletin/2016-01-01html androidgooglesourcecom/kernel/common/+/69bfe2d957d903521d32324190c2754cb073be15%5E%21/#F0