7.5
CVSSv2

CVE-2015-7897

Published: 16/11/2015 Updated: 17/11/2015
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The media scanning functionality in the face recognition library in android.media.process in Samsung Galaxy S6 Edge before G925VVRU4B0G9 allows remote malicious users to gain privileges or cause a denial of service (memory corruption) via a crafted BMP image file.

Vulnerable Product Search on Vulmon Subscribe to Product

samsung galaxy s6 -

Exploits

Source: codegooglecom/p/google-security-research/issues/detail?id=499 The attached files cause memory corruption when they are scanned by the face recognition library in androidmediaprocess From faces-artbmp F/libc (11305): Fatal signal 11 (SIGSEGV), code 1, fault addr 0x0 in tid 11555 (Thread-1136) I/DEBUG ( 2955): *** *** ** ...