CVE-2015-6645

MEDIUM

Google Android - Access Control

Title source: rule

Description

SyncManager in Android before 5.1.1 LMY49F and 6.0 before 2016-01-01 allows attackers to cause a denial of service (continuous rebooting) via a crafted application, aka internal bug 23591205.

Scores

CVSS v3 5.0
EPSS 0.0005
EPSS Percentile 15.3%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:H

Classification

CWE
CWE-264
Status draft

Affected Products (7)

google/android
google/android
google/android
google/android
google/android
google/android
google/android

Timeline

Published Jan 06, 2016
Tracked Since Feb 18, 2026