CVE

Id
81122  
CVE No.
CVE-2015-3845  
Status
Candidate  
Description
The Parcel::appendFrom function in libs/binder/Parcel.cpp in Binder in Android before 5.1.1 LMY48M does not consider parcel boundaries during identification of binder objects in an append operation, which allows attackers to obtain a different application"s privileges via a crafted application, aka internal bug 17312693.  
Phase
Assigned (20150512)  
Votes
None (candidate not yet proposed)  
Comments