Multiple integer overflows in the GraphicBuffer::unflatten function in platform/frameworks/native/libs/ui/GraphicBuffer.cpp in Android through 5.0 allow attackers to gain privileges or cause a denial of service (memory corruption) via vectors that trigger a large number of (1) file descriptors or (2) integer values.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2015-02-16T00:00:00
Updated: 2024-08-06T04:47:16.183Z
Reserved: 2015-02-04T00:00:00
Link: CVE-2015-1474
Vulnrichment
No data.
NVD
Status : Modified
Published: 2015-02-16T00:59:06.467
Modified: 2017-09-29T01:34:48.013
Link: CVE-2015-1474
Redhat
No data.