vendor:
N/A
by:
Google Security Research
9,3
CVSS
HIGH
Memory Corruption
119
CWE
Product Name: N/A
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: N/A
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Android
2015
Memory Corruption
The attached files cause memory corruption when they are scanned by the face recognition library in android.media.process. The vulnerability is triggered when the face recognition library scans the attached files, causing a fatal signal 11 (SIGSEGV) and code 1 (SEGV_MAPERR) with a fault address of 0x0. To reproduce, download the attached file and scan it with the face recognition library.
Mitigation:
N/A