← back
CVE-2015-1539

CVE-2015-1539

25Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 86%
exploitation probability
86%top 1% of all CVEs
observed exploitation
nono source reports it
Multiple integer underflows in the ESDS::parseESDescriptor function in ESDS.cpp in libstagefright in Android before 5.1.1 LMY48I allow remote attackers to execute arbitrary code via crafted ESDS atoms, aka internal bug 20139950, a related issue to CVE-2015-4493.
Affected products
n/a · n/a