2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-6602 | — | — | 3.2% | Oct 2, 2015 | libutils in Android through 5.1.1 LMY48M allows remote attackers to execute arbitrary code via crafted metadata in a (1)... |
| CVE-2015-4546 | — | — | 3.2% | Oct 2, 2015 | Directory traversal vulnerability in EMC RSA OneStep 6.9 before build 559, as used in RSA Certificate Manager and RSA Re... |
| CVE-2015-3876 | — | — | 3.1% | Oct 2, 2015 | libstagefright in Android through 5.1.1 LMY48M allows remote attackers to execute arbitrary code via crafted metadata in... |
| CVE-2015-2858 | — | — | 1.5% | Oct 2, 2015 | Datalex airline booking software before 2015-09-03 allows remote attackers to read or write to arbitrary user data via a... |
| CVE-2015-7612 | — | — | 0.8% | Oct 1, 2015 | Multiple cross-site request forgery (CSRF) vulnerabilities in the Organizations page in Enterprise Manager in McAfee Vul... |
| CVE-2015-7311 | — | — | 0.4% | Oct 1, 2015 | libxl in Xen 4.1.x through 4.6.x does not properly handle the readonly flag on disks when using the qemu-xen device mode... |
| CVE-2015-7236 | — | — | 6.4% | Oct 1, 2015 | Use-after-free vulnerability in xprt_set_caller in rpcb_svc_com.c in rpcbind 0.2.1 and earlier allows remote attackers t... |
| CVE-2015-1338 | — | — | 0.9% | Oct 1, 2015 | kernel_crashdump in Apport before 2.19 allows local users to cause a denial of service (disk consumption) or possibly ga... |
| CVE-2015-1335 | — | — | 0.5% | Oct 1, 2015 | lxc-start in lxc before 1.0.8 and 1.1.x before 1.1.4 allows local container administrators to escape AppArmor confinemen... |
| CVE-2015-6575 | — | — | 2.8% | Oct 1, 2015 | SampleTable.cpp in libstagefright in Android before 5.1.1 LMY48I does not properly consider integer promotion, which all... |
| CVE-2015-3864 | — | — | 87.1% | Oct 1, 2015 | Integer underflow in the MPEG4Extractor::parseChunk function in MPEG4Extractor.cpp in libstagefright in mediaserver in A... |
| CVE-2015-3863 | — | — | 1.3% | Oct 1, 2015 | Multiple integer overflows in the Blob class in keystore/keystore.cpp in Keystore in Android before 5.1.1 LMY48M allow a... |
| CVE-2015-3861 | — | — | 0.8% | Oct 1, 2015 | Multiple integer overflows in the addVorbisCodecInfo function in matroska/MatroskaExtractor.cpp in libstagefright in med... |
| CVE-2015-3860 | — | — | 0.3% | Oct 1, 2015 | packages/Keyguard/res/layout/keyguard_password_view.xml in Lockscreen in Android 5.x before 5.1.1 LMY48M does not restri... |
| CVE-2015-3858 | — | — | 0.7% | Oct 1, 2015 | The checkDestination function in internal/telephony/SMSDispatcher.java in Android before 5.1.1 LMY48M relies on an obsol... |
| CVE-2015-3849 | — | — | 1.5% | Oct 1, 2015 | The Region_createFromParcel function in core/jni/android/graphics/Region.cpp in Region in Android before 5.1.1 LMY48M do... |
| CVE-2015-3845 | — | — | 0.6% | Oct 1, 2015 | The Parcel::appendFrom function in libs/binder/Parcel.cpp in Binder in Android before 5.1.1 LMY48M does not consider par... |
| CVE-2015-3844 | — | — | 0.5% | Oct 1, 2015 | The getProcessRecordLocked method in services/core/java/com/android/server/am/ActivityManagerService.java in ActivityMan... |
| CVE-2015-3843 | — | — | 1.5% | Oct 1, 2015 | The SIM Toolkit (STK) framework in Android before 5.1.1 LMY48I allows attackers to (1) intercept or (2) emulate unspecif... |
| CVE-2015-3842 | — | — | 1.4% | Oct 1, 2015 | Multiple heap-based buffer overflows in libeffects in the Audio Policy Service in mediaserver in Android before 5.1.1 LM... |
| CVE-2015-3837 | — | — | 1.5% | Oct 1, 2015 | The OpenSSLX509Certificate class in org/conscrypt/OpenSSLX509Certificate.java in Android before 5.1.1 LMY48I improperly ... |
| CVE-2015-3836 | — | — | 2.8% | Oct 1, 2015 | The Parse_wave function in arm-wt-22k/lib_src/eas_mdls.c in the Sonivox DLS-to-EAS converter in Android before 5.1.1 LMY... |
| CVE-2015-3835 | — | — | 1.8% | Oct 1, 2015 | Buffer overflow in the OMXNodeInstance::emptyBuffer function in omx/OMXNodeInstance.cpp in libstagefright in Android bef... |
| CVE-2015-3834 | — | — | 1.2% | Oct 1, 2015 | Multiple integer overflows in the BnHDCP::onTransact function in media/libmedia/IHDCP.cpp in libstagefright in Android b... |
| CVE-2015-3833 | — | — | 0.7% | Oct 1, 2015 | The getRunningAppProcesses function in services/core/java/com/android/server/am/ActivityManagerService.java in Android b... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now