CVE

Id
81140  
CVE No.
CVE-2015-3863  
Status
Candidate  
Description
Multiple integer overflows in the Blob class in keystore/keystore.cpp in Keystore in Android before 5.1.1 LMY48M allow attackers to execute arbitrary code and read arbitrary Keystore keys via an application that uses a crafted blob in an insert operation, aka internal bug 22802399.  
Phase
Assigned (20150512)  
Votes
None (candidate not yet proposed)  
Comments