Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2015-6640

The prctl_set_vma_anon_name function in kernel/sys.c in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 does not ensure that only one vma is accessed in a certain update action, which allows attackers to gain privileges or cause a denial of service (vma list corruption) via a crafted application, aka internal bug 20017123.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 29.2%
CVSS Severity
CVSS v3 Score 7.8
CVSS v2 Score 9.3
Products affected by CVE-2015-6640
  • Google » Android » Version: 4.4.4
    cpe:2.3:o:google:android:4.4.4
  • Google » Android » Version: 5.0
    cpe:2.3:o:google:android:5.0
  • Google » Android » Version: 5.1.1
    cpe:2.3:o:google:android:5.1.1
  • Google » Android » Version: 6.0
    cpe:2.3:o:google:android:6.0


Contact Us

Shodan ® - All rights reserved