Início
Início
Tendências
Tendências
Vulnerabilidades
Vulnerabilidades
Notícias
Notícias
Pesquisadores
Pesquisadores
Por que dbugs?
Por que dbugs?
Configurações

Adam Lesinski

Pesquisador deGoogle
#28588de 56,328
9.3CVSS total
Vulnerabilidades · 1
PT-2015-2230
9.3
2015-10-01
Google · Android · CVE-2015-1528
**Name of the Vulnerable Software and Affected Versions** Android versions prior to 5.1.1 LMY48M **Description** The issue is related to an integer overflow in the `native handle create` function, which can be exploited by attackers to obtain different application's privileges or cause a denial of service, resulting in Binder heap memory corruption. This can be achieved via a crafted application. **Recommendations** For Android versions prior to 5.1.1 LMY48M, update to version 5.1.1 LMY48M or later to resolve the issue. As a temporary workaround, consider restricting the use of the `native handle create` function until a patch is available.