CVE-2015-3864 EXPLOIT
10.0
HIGH · CVSS 2.0 · EPSS 87.1% (pctl 100)
Patch early
A public exploit exists.
Description
Integer underflow in the MPEG4Extractor::parseChunk function in MPEG4Extractor.cpp in libstagefright in mediaserver in Android before 5.1.1 LMY48M allows remote attackers to execute arbitrary code via crafted MPEG-4 data, aka internal bug 23034759. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-3824.
Scoring
| CVSS | 10.0 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
| EPSS | 87.13% — more likely to be exploited than 100% of all CVEs |
| Weakness | CWE-189 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2015-10-01 |
| Last modified | 2026-06-17 |
Affected (1)
| Vendor | Product |
|---|---|
| android |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Google Android 5.0 < 5.1.1 - 'Stagefright' .MP4 tx3g Integer Overflow (Metasploit) | 2016-09-27 |
| exploit-db | Google Android 5.0.1 - Metaphor Stagefright (ASLR Bypass) | 2016-03-30 |
| exploit-db | Google Android - libstagefright Integer Overflow Remote Code Execution | 2015-09-17 |
References
- http://www.securityfocus.com/bid/76682
- https://android.googlesource.com/platform/frameworks/av/+/6fe85f7e15203e48df2cc3e8e1c4bc6ad49dc968
- https://blog.zimperium.com/cve-2015-3864-metasploit-module-now-available-for-testing/
- https://blog.zimperium.com/reflecting-on-stagefright-patches/
- https://groups.google.com/forum/message/raw?msg=android-security-updates/1M7qbSvACjo/Y7jewiW1AwAJ
- https://www.exploit-db.com/exploits/38226/
- https://www.exploit-db.com/exploits/39640/
- https://www.exploit-db.com/exploits/40436/
- http://www.securityfocus.com/bid/76682
- https://android.googlesource.com/platform/frameworks/av/+/6fe85f7e15203e48df2cc3e8e1c4bc6ad49dc968
- https://blog.zimperium.com/cve-2015-3864-metasploit-module-now-available-for-testing/
- https://blog.zimperium.com/reflecting-on-stagefright-patches/
- https://groups.google.com/forum/message/raw?msg=android-security-updates/1M7qbSvACjo/Y7jewiW1AwAJ
- https://www.exploit-db.com/exploits/38226/
- https://www.exploit-db.com/exploits/39640/
- https://www.exploit-db.com/exploits/40436/
→ the Explorer · watch your stack · NVD