CVE-2015-6631
Last modified
CVE-2015-6631 is a vulnerability of currently unknown severity. libstagefright in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows remote attackers to obtain sensitive information, and consequently bypass an unspecified protection mechanism, via unknown vectors, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 24623447.. EPSS estimates a 0.75% chance of exploitation in the next 30 days.
Description
libstagefright in Android before 5.1.1 LMY48Z and 6.0 before 2015-12-01 allows remote attackers to obtain sensitive information, and consequently bypass an unspecified protection mechanism, via unknown vectors, as demonstrated by obtaining Signature or SignatureOrSystem access, aka internal bug 24623447.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Android | >= 5.0, < 5.1.1 | |
| Android | 6.0 |
References
- http://source.android.com/security/bulletin/2015-12-01.htmlVendor Advisory
- http://source.android.com/security/bulletin/2015-12-01.htmlVendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2015-6631?
How severe is CVE-2015-6631?
How do I fix CVE-2015-6631?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2015
- CVE-2015-6625System Server in Android 6.0 before 2015-12-01 allows attack…
- CVE-2015-6626libstagefright in Android before 5.1.1 LMY48Z and 6.0 before…
- CVE-2015-6627The Audio component in Android before 5.1.1 LMY48Z and 6.0 b…
- CVE-2015-6628Media Framework in Android before 5.1.1 LMY48Z and 6.0 befor…
- CVE-2015-6629Wi-Fi in Android 5.x before 5.1.1 LMY48Z allows attackers to…
- CVE-2015-6630SystemUI in Android 5.x before 5.1.1 LMY48Z and 6.0 before 2…
- CVE-2015-6632libstagefright in Android before 5.1.1 LMY48Z and 6.0 before…
- CVE-2015-6633The display drivers in Android before 5.1.1 LMY48Z and 6.0 b…
- CVE-2015-6634The display drivers in Android before 5.1.1 LMY48Z allow rem…
- CVE-2015-6636mediaserver in Android 5.x before 5.1.1 LMY49F and 6.0 befor…
- CVE-2015-6637The MediaTek misc-sd driver in Android before 5.1.1 LMY49F a…
- CVE-2015-6638The Imagination Technologies driver in Android 5.x before 5.…
Are you affected by CVE-2015-6631?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
