CVE-2015-6628
Last modified
CVE-2015-6628 is a vulnerability of currently unknown severity. Media Framework in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows attackers to obtain sensitive information, and consequently bypass an unspecified protection mechanism, via unknown vectors, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 24074485.. EPSS estimates a 0.46% chance of exploitation in the next 30 days.
Description
Media Framework in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows attackers to obtain sensitive information, and consequently bypass an unspecified protection mechanism, via unknown vectors, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 24074485.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Android | >= 5.0, < 5.1.1 | |
| Android | 6.0 |
References
- http://source.android.com/security/bulletin/2015-12-01.htmlVendor Advisory
- http://source.android.com/security/bulletin/2015-12-01.htmlVendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2015-6628?
How severe is CVE-2015-6628?
How do I fix CVE-2015-6628?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2015
- CVE-2015-6622The Native Frameworks Library in Android before 5.1.1 LMY48Z…
- CVE-2015-6623Wi-Fi in Android 6.0 before 2015-12-01 allows attackers to g…
- CVE-2015-6624System Server in Android 6.0 before 2015-12-01 allows attack…
- CVE-2015-6625System Server in Android 6.0 before 2015-12-01 allows attack…
- CVE-2015-6626libstagefright in Android before 5.1.1 LMY48Z and 6.0 before…
- CVE-2015-6627The Audio component in Android before 5.1.1 LMY48Z and 6.0 b…
- CVE-2015-6629Wi-Fi in Android 5.x before 5.1.1 LMY48Z allows attackers to…
- CVE-2015-6630SystemUI in Android 5.x before 5.1.1 LMY48Z and 6.0 before 2…
- CVE-2015-6631libstagefright in Android before 5.1.1 LMY48Z and 6.0 before…
- CVE-2015-6632libstagefright in Android before 5.1.1 LMY48Z and 6.0 before…
- CVE-2015-6633The display drivers in Android before 5.1.1 LMY48Z and 6.0 b…
- CVE-2015-6634The display drivers in Android before 5.1.1 LMY48Z allow rem…
Are you affected by CVE-2015-6628?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
