危険度:
  CVE識別番号: CVE-2015-3861
  情報公開日: 4 06, 2016

  概要

This vulnerability pertains to the multiple integer overflows in the addVorbisCodecInfo function in matroska/MatroskaExtractor.cpp in libstagefright in mediaserver in Android before 5.1.1 LMY48M. When exploited successfully, it could allow remote attackers denial of service (DoS).

Trend Micro researcher Wish Wu disclosed details about this vulnerability to Google. The said company acknowledged Wu’s research contribution.

  トレンドマイクロの対策

Apply associated Trend Micro DPI Rules.