2015 CVE Vulnerabilities

8,779 CVEs published in 2015.

CVE IDSeverityCVSSDescription
CVE-2015-6602libutils in Android through 5.1.1 LMY48M allows remote attackers to execute arbitrary code via crafted metadata in a (1)...
CVE-2015-4546Directory traversal vulnerability in EMC RSA OneStep 6.9 before build 559, as used in RSA Certificate Manager and RSA Re...
CVE-2015-3876libstagefright in Android through 5.1.1 LMY48M allows remote attackers to execute arbitrary code via crafted metadata in...
CVE-2015-2858Datalex airline booking software before 2015-09-03 allows remote attackers to read or write to arbitrary user data via a...
CVE-2015-7612Multiple cross-site request forgery (CSRF) vulnerabilities in the Organizations page in Enterprise Manager in McAfee Vul...
CVE-2015-7311libxl in Xen 4.1.x through 4.6.x does not properly handle the readonly flag on disks when using the qemu-xen device mode...
CVE-2015-7236Use-after-free vulnerability in xprt_set_caller in rpcb_svc_com.c in rpcbind 0.2.1 and earlier allows remote attackers t...
CVE-2015-1338kernel_crashdump in Apport before 2.19 allows local users to cause a denial of service (disk consumption) or possibly ga...
CVE-2015-1335lxc-start in lxc before 1.0.8 and 1.1.x before 1.1.4 allows local container administrators to escape AppArmor confinemen...
CVE-2015-6575SampleTable.cpp in libstagefright in Android before 5.1.1 LMY48I does not properly consider integer promotion, which all...
CVE-2015-3864Integer underflow in the MPEG4Extractor::parseChunk function in MPEG4Extractor.cpp in libstagefright in mediaserver in A...
CVE-2015-3863Multiple integer overflows in the Blob class in keystore/keystore.cpp in Keystore in Android before 5.1.1 LMY48M allow a...
CVE-2015-3861Multiple integer overflows in the addVorbisCodecInfo function in matroska/MatroskaExtractor.cpp in libstagefright in med...
CVE-2015-3860packages/Keyguard/res/layout/keyguard_password_view.xml in Lockscreen in Android 5.x before 5.1.1 LMY48M does not restri...
CVE-2015-3858The checkDestination function in internal/telephony/SMSDispatcher.java in Android before 5.1.1 LMY48M relies on an obsol...
CVE-2015-3849The Region_createFromParcel function in core/jni/android/graphics/Region.cpp in Region in Android before 5.1.1 LMY48M do...
CVE-2015-3845The Parcel::appendFrom function in libs/binder/Parcel.cpp in Binder in Android before 5.1.1 LMY48M does not consider par...
CVE-2015-3844The getProcessRecordLocked method in services/core/java/com/android/server/am/ActivityManagerService.java in ActivityMan...
CVE-2015-3843The SIM Toolkit (STK) framework in Android before 5.1.1 LMY48I allows attackers to (1) intercept or (2) emulate unspecif...
CVE-2015-3842Multiple heap-based buffer overflows in libeffects in the Audio Policy Service in mediaserver in Android before 5.1.1 LM...
CVE-2015-3837The OpenSSLX509Certificate class in org/conscrypt/OpenSSLX509Certificate.java in Android before 5.1.1 LMY48I improperly ...
CVE-2015-3836The Parse_wave function in arm-wt-22k/lib_src/eas_mdls.c in the Sonivox DLS-to-EAS converter in Android before 5.1.1 LMY...
CVE-2015-3835Buffer overflow in the OMXNodeInstance::emptyBuffer function in omx/OMXNodeInstance.cpp in libstagefright in Android bef...
CVE-2015-3834Multiple integer overflows in the BnHDCP::onTransact function in media/libmedia/IHDCP.cpp in libstagefright in Android b...
CVE-2015-3833The getRunningAppProcesses function in services/core/java/com/android/server/am/ActivityManagerService.java in Android b...

Check if your code is affected by 2015 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now