Android vulnerability related with stagefright

取消
显示结果 
显示  仅  | 搜索替代 
您的意思是: 

Android vulnerability related with stagefright

Android vulnerability related with stagefright

There are several vulnerabilities been found recently as below:

    They are reported as CVE-2015-1538, CVE-2015-1539, CVE-2015-3824, CVE-2015-3826, CVE-2015-3827, CVE-2015-3828 and CVE-2015-3829.

 

 

All above vulnerabilities are related with stagefright’s stackoverflow, which exist all android version since JellyBean 4.2. The stagefright is the default Multimedia framework in Android’s AOSP source code.

 

To avoid attacking toward stagefright, it is recommended to have patches in this attach, which should be applied to myandroid/frameworks/av.

 

Reference:

https://github.com/WhisperSystems/TextSecure/issues/381

 

This document was generated from the following discussion: Android vulnerability related with stagefright

 

Created by Hui Fang

附件
%3CLINGO-SUB%20id%3D%22lingo-sub-1126267%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3E%E4%B8%8E%20stagefright%20%E7%9B%B8%E5%85%B3%E7%9A%84%20Android%20%E6%BC%8F%E6%B4%9E%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-1126267%22%20slang%3D%22en-US%22%20mode%3D%22CREATE%22%3E%26lt%3Bmeta%20http-equiv%3D%22Content-Type%22%20content%3D%22text%2Fhtml%3B%20charset%3Dutf-8%22%20%2F%26gt%3B%0A%3CP%3E%3CSPAN%20style%3D%22font-size%3A%2010pt%3B%20color%3A%20black%3B%20font-family%3A%20'courier%20new'%2C%20courier%3B%22%3E%E8%BF%91%E6%9C%9F%E5%8F%91%E7%8E%B0%E4%BB%A5%E4%B8%8B%E5%87%A0%E4%B8%AA%E6%BC%8F%E6%B4%9E%EF%BC%9A%3C%2FSPAN%3E%3C%2FP%3E%3CUL%20style%3D%22list-style-type%3A%20disc%3B%22%3E%3CLI%3E%3CSPAN%20style%3D%22font-size%3A%2010pt%3B%20font-family%3A%20'courier%20new'%2C%20courier%3B%20color%3A%20black%3B%22%3EZIMPERIUM%E7%9A%84%E6%8A%A5%E5%91%8A%EF%BC%9A%3CA%20_jive_internal%3D%22true%22%20href%3D%22https%3A%2F%2Fcommunity.nxp.com%2Fexternal-link.jspa%3Furl%3Dhttp%253A%252F%252Fjiveon.jivesoftware.com%252Fmpss%252Fc%252F7gA%252FPDcDAA%252Ft.1p4%252F5z0zjG0pTd2TX1EnZDdFDQ%252Fh3%252FhAMy2Th8Lsdoz-2BI-2B-2B4FlQpxshE-2Fm9XH3UWXhoYdrt6y4Crt0q1GUsW8pizm7YGWnxGc52SR4U4vCgooHeqoe1S9fu9dc4l1m2ew0Kz-2BSCbA-3D%22%20target%3D%22_blank%22%3E%3CSPAN%20style%3D%22color%3A%20black%3B%22%3E%3C%2FSPAN%3E%3C%2FA%3E%20%3CA%20href%3D%22http%3A%2F%2Fjiveon.jivesoftware.com%2Fmpss%2Fc%2F7gA%2FPDcDAA%2Ft.1p4%2F5z0zjG0pTd2TX1EnZDdFDQ%2Fh3%2FhAMy2Th8Lsdoz-2BI-2B-2B4FlQpxshE-2Fm9XH3UWXhoYdrt6y4Crt0q1GUsW8pizm7YGWnxGc52SR4U4vCgooHeqoe1S9fu9dc4l1m2ew0Kz-2BSCbA-3D%22%20target%3D%22test_blank%22%20rel%3D%22nofollow%20noopener%20noreferrer%22%3Ehttp%3A%2F%2Fjiveon.jivesoftware.com%2Fmpss%2Fc%2F7gA%2FPDcDAA%2Ft.1p4%2F5z0zjG0pTd2TX1EnZDdFDQ%2Fh3%2FhAMy2Th8Lsdoz-2BI-2B-2B4FlQpxshE-2Fm9XH3UWXhoYdrt6y4Crt0q1GUsW8pizm7YGWnxGc52SR4U4vCgooHeqoe1S9fu9dc4l1m2ew0Kz-2BSCbA-3D%3C%2FA%3E%3C%2FSPAN%3E%3C%2FLI%3E%3C%2FUL%3E%3CP%3E%3CSPAN%20style%3D%22color%3A%20black%3B%20font-size%3A%2010pt%3B%20font-family%3A%20'courier%20new'%2C%20courier%3B%22%3E%E6%8D%AE%E6%8A%A5%E9%81%93%EF%BC%8C%E5%AE%83%E4%BB%AC%E5%88%86%E5%88%AB%E6%98%AF%20CVE-2015-1538%E3%80%81CVE-2015-1539%E3%80%81CVE-2015-3824%E3%80%81CVE-2015-3826%E3%80%81CVE-2015-3827%E3%80%81CVE-2015-3828%20%E5%92%8C%20CVE-2015-3829%E3%80%82%3C%2FSPAN%3E%3C%2FP%3E%3CP%20style%3D%22min-height%3A%208pt%3B%20padding%3A%200px%3B%22%3E%26nbsp%3B%3C%2FP%3E%3CUL%20style%3D%22list-style-type%3A%20disc%3B%22%3E%3CLI%3E%3CSPAN%20style%3D%22font-size%3A%2010pt%3B%20font-family%3A%20'courier%20new'%2C%20courier%3B%20color%3A%20black%3B%22%3ETrendmicro%20%E7%9A%84%E6%8A%A5%E5%91%8A%EF%BC%9A%3CA%20_jive_internal%3D%22true%22%20href%3D%22https%3A%2F%2Fcommunity.nxp.com%2Fexternal-link.jspa%3Furl%3Dhttp%253A%252F%252Fblog.trendmicro.com%252Ftrendlabs-security-intelligence%252Ftrend-micro-discovers-vulnerability-that-renders-android-devices-silent%252F%22%20target%3D%22_blank%22%3E%3CSPAN%20style%3D%22color%3A%20black%3B%22%3E%3C%2FSPAN%3E%3C%2FA%3E%20%3CA%20href%3D%22http%3A%2F%2Fblog.trendmicro.com%2Ftrendlabs-security-intelligence%2Ftrend-micro-discovers-vulnerability-that-renders-android-devices-silent%2F%22%20target%3D%22test_blank%22%20rel%3D%22nofollow%20noopener%20noreferrer%22%3Ehttp%3A%2F%2Fblog.trendmicro.com%2Ftrendlabs-security-intelligence%2Ftrend-micro-discovers-vulnerability-that-renders-android-devices-silent%2F%3C%2FA%3E%3C%2FSPAN%3E%3C%2FLI%3E%3C%2FUL%3E%3CP%20style%3D%22min-height%3A%208pt%3B%20padding%3A%200px%3B%20background%3A%20white%3B%22%3E%26nbsp%3B%3C%2FP%3E%3CP%20style%3D%22background%3A%20white%3B%22%3E%3CSPAN%20style%3D%22font-size%3A%2010pt%3B%20font-family%3A%20'courier%20new'%2C%20courier%3B%20color%3A%20black%3B%22%3E%E4%BB%A5%E4%B8%8A%E6%89%80%E6%9C%89%E6%BC%8F%E6%B4%9E%E5%9D%87%E4%B8%8E%20stagefright%20%E7%9A%84%20stackoverflow%20%E6%9C%89%E5%85%B3%EF%BC%8C%E8%AF%A5%E6%BC%8F%E6%B4%9E%E5%AD%98%E5%9C%A8%E4%BA%8E%20JellyBean%204.2%20%E5%8F%8A%E4%BB%A5%E5%90%8E%E7%9A%84%E6%89%80%E6%9C%89%20Android%20%E7%89%88%E6%9C%AC%E4%B8%AD%E3%80%82stagefright%20%E6%98%AF%20Android%20%E7%9A%84%20AOSP%20%E6%BA%90%E4%BB%A3%E7%A0%81%E4%B8%AD%E7%9A%84%E9%BB%98%E8%AE%A4%E5%A4%9A%E5%AA%92%E4%BD%93%E6%A1%86%E6%9E%B6%E3%80%82%3C%2FSPAN%3E%3C%2FP%3E%3CP%20style%3D%22min-height%3A%208pt%3B%20padding%3A%200px%3B%20margin-bottom%3A%20.0001pt%3B%20background%3A%20white%3B%22%3E%26nbsp%3B%3C%2FP%3E%3CP%20style%3D%22margin-bottom%3A%20.0001pt%3B%20background%3A%20white%3B%22%3E%3CSPAN%20style%3D%22color%3A%20black%3B%20font-size%3A%2010pt%3B%20line-height%3A%201.5%3B%20font-family%3A%20'courier%20new'%2C%20courier%3B%22%3E%E4%B8%BA%E4%BA%86%E9%81%BF%E5%85%8D%E5%8F%97%E5%88%B0%20stagefright%20%E6%94%BB%E5%87%BB%EF%BC%8C%E5%BB%BA%E8%AE%AE%E5%9C%A8%E6%AD%A4%E9%99%84%E4%BB%B6%E4%B8%AD%E6%89%93%E4%B8%8A%E8%A1%A5%E4%B8%81%EF%BC%8C%E5%B9%B6%E5%B0%86%E5%85%B6%E5%BA%94%E7%94%A8%E5%88%B0%20myandroid%2Fframeworks%2Fav%E3%80%82%3C%2FSPAN%3E%3C%2FP%3E%3CP%20style%3D%22min-height%3A%208pt%3B%20padding%3A%200px%3B%22%3E%26nbsp%3B%3C%2FP%3E%3CP%3E%3CSPAN%20style%3D%22font-size%3A%2010pt%3B%20color%3A%20black%3B%20font-family%3A%20'courier%20new'%2C%20courier%3B%22%3E%E5%8F%82%E8%80%83%E8%B5%84%E6%96%99%EF%BC%9A%3C%2FSPAN%3E%3C%2FP%3E%3CP%3E%3CSPAN%20style%3D%22font-size%3A%2010pt%3B%20font-family%3A%20'courier%20new'%2C%20courier%3B%22%3E%3CSPAN%20style%3D%22color%3A%20black%3B%22%3E%3CA%20_jive_internal%3D%22true%22%20href%3D%22https%3A%2F%2Fcommunity.nxp.com%2Fexternal-link.jspa%3Furl%3Dhttps%253A%252F%252Fgithub.com%252FWhisperSystems%252FTextSecure%252Fissues%252F3817%22%20target%3D%22_blank%22%3E%3CSPAN%20style%3D%22color%3A%20black%3B%22%3E%3C%2FSPAN%3E%3C%2FA%3E%3CA%20href%3D%22https%3A%2F%2Fgithub.com%2FWhisperSystems%2FTextSecure%2Fissues%2F381%22%20target%3D%22test_blank%22%20rel%3D%22nofollow%20noopener%20noreferrer%22%3Ehttps%3A%2F%2Fgithub.com%2FWhisperSystems%2FTextSecure%2Fissues%2F381%3C%2FA%3E%3C%2FSPAN%3E%3C%2FSPAN%3E%20%3C%2FP%3E%3CP%20style%3D%22min-height%3A%208pt%3B%20padding%3A%200px%3B%22%3E%26nbsp%3B%3C%2FP%3E%3CP%3E%E6%9C%AC%E6%96%87%E6%A1%A3%E7%94%B1%E4%BB%A5%E4%B8%8B%E8%AE%A8%E8%AE%BA%E7%94%9F%E6%88%90%EF%BC%9A%20%3CA%20_jive_internal%3D%22true%22%20data-containerid%3D%221007%22%20data-containertype%3D%22700%22%20data-objectid%3D%22363525%22%20data-objecttype%3D%221%22%20href%3D%22https%3A%2F%2Fcommunity.nxp.com%2Fthread%2F363525%22%20target%3D%22_blank%22%3E%E4%B8%8E%20stagefright%20%E7%9B%B8%E5%85%B3%E7%9A%84%20Android%20%E6%BC%8F%E6%B4%9E%3C%2FA%3E%3C%2FP%3E%3CP%20style%3D%22min-height%3A%208pt%3B%20padding%3A%200px%3B%22%3E%26nbsp%3B%3C%2FP%3E%3CP%3E%E7%94%B1%3CA%20_jive_internal%3D%22true%22%20data-containerid%3D%22-1%22%20data-containertype%3D%22-1%22%20data-objectid%3D%22203161%22%20data-objecttype%3D%223%22%20href%3D%22https%3A%2F%2Fcommunity.nxp.com%2Fpeople%2FFangHui%22%20target%3D%22_blank%22%3EHui%20Fang%3C%2FA%3E%E5%88%9B%E5%BB%BA%20%3C%2FP%3E%3C%2FLINGO-BODY%3E
无评分
版本历史
最后更新:
‎08-17-2015 06:45 AM
更新人: