~ubuntu-security/ubuntu-cve-tracker/master

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
Candidate: CVE-2016-0836
PublicDate: 2016-04-17
References:
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-0836
 https://android.googlesource.com/platform/external/libmpeg2/+/8b4ed5a23175b7ffa56eea4678db7287f825e985
 http://source.android.com/security/bulletin/2016-04-02.html
Description:
 Stack-based buffer overflow in decoder/impeg2d_vld.c in mediaserver in
 Android 6.x before 2016-04-01 allows remote attackers to execute arbitrary
 code or cause a denial of service (memory corruption) via a crafted media
 file, aka internal bug 25812590.
Ubuntu-Description:
Notes:
Bugs:
Priority: high
Discovered-by: Anestis Bechtsoudis
Assigned-to:

Patches_android:
upstream_android: released (6.x 2016-04-01)
precise_android: DNE
precise/esm_android: DNE
trusty_android: needed
vivid/stable-phone-overlay_android: ignored (reached end-of-life)
vivid/ubuntu-core_android: DNE
wily_android: ignored (reached end-of-life)
xenial_android: needed
yakkety_android: ignored (reached end-of-life)
zesty_android: needed
devel_android: needed